VYPR

seacms-13.6-security-advisories

by T Chachamaru

CVEs (2)

  • CVE-2026-82598HigAug 31, 2026
    risk 0.47cvss 7.3epss

    A vulnerability was determined in SeaCMS up to 13.6. Affected is the function parseIf of the file search.php of the component Template Engine. This manipulation of the argument searchtype causes code injection. It is possible to initiate the attack remotely. The exploit has been…

  • CVE-2026-82602MedAug 31, 2026
    risk 0.34cvss 5.3epss

    A security vulnerability has been detected in SeaCMS up to 13.6. This vulnerability affects unknown code of the file /ass.php. The manipulation leads to authorization bypass. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used.