📦 Piranha Cms

by Dotnetfoundation

🔍 What is Piranha Cms?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-25976

HIGH CVSS 8.1 Nov 16, 2021

This CSRF vulnerability in PiranhaCMS allows attackers to trick authenticated administrators into performing unauthorized actions like deleting users, roles, posts, or media folders by crafting malici...

CVE-2025-67290

MEDIUM CVSS 6.1 Dec 22, 2025

A stored cross-site scripting vulnerability in Piranha CMS v12.1 allows attackers to inject malicious scripts into the Excerpt field of the Page Settings module. When users view affected pages, the sc...

CVE-2025-67291

MEDIUM CVSS 6.1 Dec 22, 2025

A stored cross-site scripting vulnerability in Piranha CMS v12.1 allows attackers to inject malicious scripts into the Media module's Name field. This affects all users of Piranha CMS v12.1 who have t...

CVE-2025-61413

MEDIUM CVSS 6.1 Oct 23, 2025

A stored cross-site scripting vulnerability in Piranha CMS v12.0 allows authenticated attackers to inject malicious scripts into Markdown blocks when creating pages. This affects all Piranha CMS v12.0...

CVE-2025-57692

MEDIUM CVSS 6.8 Sep 26, 2025

PiranhaCMS 12.0 contains a stored cross-site scripting (XSS) vulnerability in the Text content block editor. Attackers can inject malicious JavaScript that executes in other users' browsers when they ...

CVE-2024-55341

MEDIUM CVSS 4.7 Dec 20, 2024

A stored cross-site scripting vulnerability in Piranha CMS allows authenticated attackers to inject malicious JavaScript into pages via markdown content. When users view these pages, the script execut...