High severity7.5NVD Advisory· Published Feb 21, 2026· Updated Jun 17, 2026
CVE-2026-27202
CVE-2026-27202
Description
GetSimple CMS is a content management system. All versions of GetSimple CMS have a flaw in the Uploaded Files feature that allows for arbitrary file reads. This issue has not been fixed at the time of publication.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:getsimple-ce:getsimple_cms:3.3.22:*:*:*:community:*:*:*+ 1 more
- cpe:2.3:a:getsimple-ce:getsimple_cms:3.3.22:*:*:*:community:*:*:*
- (no CPE)
(expand)+ 1 more
- (no CPE)
- (no CPE)range: <= 3.3.22
Patches
Vulnerability mechanics
References
1- github.com/GetSimpleCMS-CE/GetSimpleCMS-CE/security/advisories/GHSA-xhwv-g6q4-h886nvdExploitVendor Advisory
News mentions
0No linked articles in our index yet.