Product
tendenci
6 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-70960
CVE-2025-70959
CVE-2020-36962
CVE-2026-23946
CVE-2020-14942
CVE-2008-0793
all versions
A stored cross-site scripting (XSS) vulnerability in the Forums module of Tendenci CMS v15.3.7 allows attackers to execute arbitra
all versions
A stored cross-site scripting (XSS) vulnerability in the Jobs module of Tendenci CMS v15.3.7 allows attackers to execute arbitrary
all versions
Tendenci 12.3.1 contains a CSV formula injection vulnerability in the contact form message field that allows attackers to inject m
< 15.3.12
Tendenci is an open source content management system built for non-profits, associations and cause-based sites. Versions 15.3.11 a
all versions
Tendenci 12.0.10 allows unrestricted deserialization in apps\helpdesk\views\staff.py.
all versions
Multiple cross-site scripting (XSS) vulnerabilities in search.asp in Tendenci CMS allow remote attackers to inject arbitrary web s