📦 Pluxml

by Pluxml

🔍 What is Pluxml?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2020-18185

CRITICAL CVSS 9.8 Oct 2, 2020

CVE-2020-18185 is a critical remote code execution vulnerability in PluXml 5.7 that allows attackers to execute arbitrary PHP code by modifying the configuration file. This affects all PluXml 5.7 inst...

CVE-2024-22636

HIGH CVSS 8.8 Jan 25, 2024

PluXml Blog v5.8.9 contains a remote code execution vulnerability in the Static Pages feature. Attackers can inject malicious payloads into the Content field to execute arbitrary code on the server. T...

CVE-2022-25018

HIGH CVSS 8.8 Mar 1, 2022

CVE-2022-25018 is a critical remote code execution vulnerability in Pluxml CMS that allows attackers to execute arbitrary PHP code by injecting it into static pages. This affects all users running Plu...

CVE-2025-15438

MEDIUM CVSS 4.7 Jan 2, 2026

This vulnerability in PluXml's Media Management Module allows remote attackers to execute arbitrary code through deserialization of manipulated file arguments. It affects all PluXml installations up t...

CVE-2025-67436

MEDIUM CVSS 6.5 Dec 22, 2025

CVE-2025-67436 is an authenticated remote code execution vulnerability in PluXml CMS 5.8.22. Attackers with administrator panel access can inject malicious PHP webshells into theme files like home.php...