📦 Wondercms

by Wondercms

🔍 What is Wondercms?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-32340

CRITICAL CVSS 9.6 Apr 17, 2024

This cross-site scripting (XSS) vulnerability in WonderCMS v3.4.3 allows attackers to inject malicious scripts into the website title parameter, which then executes in users' browsers when they visit ...

CVE-2020-35313

CRITICAL CVSS 9.8 Apr 20, 2021

This SSRF vulnerability in WonderCMS 3.1.3 allows remote attackers to execute arbitrary code by exploiting the theme/plugin installer functionality. Attackers can craft malicious URLs that trigger ser...

CVE-2025-57055

MEDIUM CVSS 6.5 Sep 17, 2025

WonderCMS 3.5.0 contains a Server-Side Request Forgery (SSRF) vulnerability in its custom module installation feature. Authenticated administrators can exploit this by providing malicious URLs, causin...

CVE-2025-3123

MEDIUM CVSS 4.7 Apr 2, 2025

This vulnerability in WonderCMS 3.5.0 allows remote attackers to upload arbitrary files through the theme/plugin installation function, potentially leading to code execution. The vulnerability affects...

CVE-2024-41305

MEDIUM CVSS 4.7 Jul 30, 2024

This Server-Side Request Forgery (SSRF) vulnerability in WonderCMS v3.4.3 allows attackers to force the application to make arbitrary HTTP requests to internal or external systems by injecting crafted...