Known Vulnerabilities for Piranha Cms by Dotnetfoundation
Listed below are 4 of the newest known vulnerabilities associated with "Piranha Cms" by "Dotnetfoundation".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2025-67291 json | A stored cross-site scripting (XSS) vulnerability in the Media module of Piranha CMS v12.1 allows attackers to execute arbitr... | Not Provided | 2025-12-22 | 2026-07-05 |
| CVE-2025-67290 json | A stored cross-site scripting (XSS) vulnerability in the Page Settings module of Piranha CMS v12.1 allows attackers to execut... | Not Provided | 2025-12-22 | 2026-07-05 |
| CVE-2021-25977 json | In PiranhaCMS, versions 7.0.0 to 9.1.1 are vulnerable to stored XSS due to the page title improperly sanitized. By creating a... | 5.4 - MEDIUM | 2021-10-25 | 2021-10-26 |
| CVE-2021-25976 json | In PiranhaCMS, versions 4.0.0-alpha1 to 9.2.0 are vulnerable to cross-site request forgery (CSRF) when performing various act... | 8.1 - HIGH | 2021-11-16 | 2021-11-17 |