Known Vulnerabilities for Sscms by Sscms Project
Listed below are 3 of the newest known vulnerabilities associated with "Sscms" by "Sscms Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-7435 json | SSCMS v7.4.0 contains a SQL injection vulnerability in the stl:sqlContent tag where the queryString attribute is passed direc... | Not Provided | 2026-04-30 | 2026-05-04 |
| CVE-2026-7429 json | SSCMS v7.4.0 contains a reflected cross-site scripting vulnerability in the STL processing endpoint that allows attackers to ... | Not Provided | 2026-04-30 | 2026-04-30 |
| CVE-2025-52237 json | An issue in the component /stl/actions/download?filePath of SSCMS v7.3.1 allows attackers to execute a directory traversal. | Not Provided | 2025-08-05 | 2026-07-05 |
| CVE-2023-43953 json | SSCMS 7.2.2 was discovered to contain a cross-site scripting (XSS) vulnerability via the Content Management component. | 5.4 - MEDIUM | 2023-10-03 | 2023-10-04 |
| CVE-2023-43952 json | SSCMS 7.2.2 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Material Management component... | 5.4 - MEDIUM | 2023-10-03 | 2023-10-04 |
| CVE-2023-43951 json | SSCMS 7.2.2 was discovered to contain a cross-site scripting (XSS) vulnerability via the Column Management component. | 5.4 - MEDIUM | 2023-10-03 | 2023-10-04 |