Home/Product/chancms
Product

chancms

16 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-65602
all versions
A template injection vulnerability in the /vip/v1/file/save component of ChanCMS v3.3.4 allows attackers to execute arbitrary code
9.8CRITICAL
CVE-2025-11905
<= 3.3.2
A vulnerability was found in yanyutao0402 ChanCMS up to 3.3.2. This vulnerability affects the function getArticle of the file app\
6.3MEDIUM
CVE-2025-11904
<= 3.3.2
A vulnerability has been found in yanyutao0402 ChanCMS up to 3.3.2. This affects the function hasUse of the file /cms/model/hasUse
6.3MEDIUM
CVE-2025-11903
<= 3.3.2
A flaw has been found in yanyutao0402 ChanCMS up to 3.3.2. Affected by this issue is the function update of the file /cms/article/
6.3MEDIUM
CVE-2025-11902
<= 3.3.2
A vulnerability was detected in yanyutao0402 ChanCMS up to 3.3.2. Affected by this vulnerability is the function findField of the
6.3MEDIUM
CVE-2025-10211
all versions
A security vulnerability has been detected in yanyutao0402 ChanCMS 3.3.0. The affected element is the function CollectController o
6.3MEDIUM
CVE-2025-10210
<= 3.3.0
A weakness has been identified in yanyutao0402 ChanCMS up to 3.3.0. Impacted is the function Search of the file app/modules/api/se
6.3MEDIUM
CVE-2025-10110
<= 3.3.1
A vulnerability was identified in ChanCMS up to 3.3.1. Impacted is an unknown function of the file /search/. The manipulation with
6.3MEDIUM
CVE-2025-10106
<= 3.3.1
A vulnerability has been found in yanyutao0402 ChanCMS up to 3.3.1. This affects an unknown part of the file /cms/collect/search.
6.3MEDIUM
CVE-2025-10105
<= 3.3.1
A flaw has been found in yanyutao0402 ChanCMS up to 3.3.1. Affected by this issue is some unknown functionality of the file /cms/a
6.3MEDIUM
CVE-2025-8266
< 3.1.3
A vulnerability has been found in yanyutao0402 ChanCMS up to 3.1.2 and classified as critical. Affected by this vulnerability is t
6.3MEDIUM
CVE-2025-8228
< 3.1.3
A vulnerability was found in yanyutao0402 ChanCMS up to 3.1.2. It has been rated as critical. Affected by this issue is the functi
6.3MEDIUM
CVE-2025-8227
< 3.1.3
A vulnerability was found in yanyutao0402 ChanCMS up to 3.1.2. It has been declared as critical. Affected by this vulnerability is
6.3MEDIUM
CVE-2025-8226
< 3.1.3
A vulnerability was found in yanyutao0402 ChanCMS up to 3.1.2. It has been classified as problematic. Affected is an unknown funct
4.3MEDIUM
CVE-2025-8133
< 3.1.3
A vulnerability classified as critical has been found in yanyutao0402 ChanCMS up to 3.1.2. This affects the function getArticle of
6.3MEDIUM
CVE-2025-8132
< 3.1.3
A vulnerability was found in yanyutao0402 ChanCMS up to 3.1.2. It has been rated as critical. Affected by this issue is the functi
5.4MEDIUM
threatengine.sh