Known Vulnerabilities for Syntax Cms by Syntax Cms Project
Listed below are 1 of the newest known vulnerabilities associated with "Syntax Cms" by "Syntax Cms Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-57309 json | A Blind SQL injection vulnerability has been identified in Windu CMS. A remote unauthenticated attacker is able to inject SQL... | Not Provided | 2026-07-20 | 2026-07-20 |
| CVE-2026-57062 json | CMS (Cryptographic Message Syntax) parsing in gpgsm in GnuPG through 2.5.20 mishandles the CMS format for AES-GCM because aes... | Not Provided | 2026-06-23 | 2026-06-23 |
| CVE-2026-56777 json | n8n before 2.25.7 and 2.26.x before 2.26.2 contains an abstract syntax tree (AST) security validator bypass in the Python Cod... | Not Provided | 2026-06-30 | 2026-07-01 |
| CVE-2026-54390 json | JTL Shop versions 5.2.0 through 5.7.1 contains a server-side template injection vulnerability that allows unauthenticated att... | Not Provided | 2026-06-18 | 2026-06-23 |
| CVE-2026-54298 json | Astro is a web framework. Prior to 6.4.6, the spreadAttributes function in Astro's server-side rendering pipeline iterates ov... | Not Provided | 2026-06-22 | 2026-06-23 |
| CVE-2026-54265 json | Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other lang... | Not Provided | 2026-06-22 | 2026-06-22 |
| CVE-2026-53537 json | Python-Multipart is a streaming multipart parser for Python. Prior to 0.0.30, parse_options_header parsed Content-Disposition... | Not Provided | 2026-06-22 | 2026-06-23 |
| CVE-2026-53427 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in leandrocp MDEx allows s... | Not Provided | 2026-06-29 | 2026-06-29 |
| CVE-2026-52747 json | ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. Prior to 3.0.1... | Not Provided | 2026-07-10 | 2026-07-13 |
| CVE-2026-48732 json | Warp is an agentic development environment. From 0.2023.03.21.08.02.stable_00 until 0.2026.05.06.15.42.stable_01, Warp contai... | Not Provided | 2026-06-24 | 2026-06-24 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Syntax Cms Project | Syntax Cms | 1.3 | |||
| Application | Syntax Cms Project | Syntax Cms | - |