Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
5.4
CVE-2025-69236
- EPSS 0.22%
- Veröffentlicht 16.03.2026 11:52:54
- Zuletzt bearbeitet 16.03.2026 19:32:09
Raytha CMS is vulnerable to Stored XSS via FieldValues[1].Value parameter in post editing functionality. Authenticated attacker with permissions to edit posts can inject arbitrary HTML and JS into website, which will be rendered/executed when visitin...
8.8
CVE-2025-15540
- EPSS 0.48%
- Veröffentlicht 16.03.2026 11:52:33
- Zuletzt bearbeitet 17.03.2026 14:24:04
"Functions" module in Raytha CMS allows privileged users to write custom code to add functionality to application. Due to a lack of sandboxing or access restrictions, JavaScript code executed through Raytha’s “functions” feature can instantiate .NET ...