VYPR
Vendor

GOV CMS

Products
1
CVEs
2
Across products
2
Status
Private

Products

1

Recent CVEs

2
  • CVE-2025-7385CriSep 4, 2025
    risk 0.60cvss epss 0.00

    Input from search query parameter in GOV CMS is not sanitized properly, leading to a Blind SQL injection vulnerability, which might be exploited by an unauthenticated remote attacker. Versions 4.0 and above are not affected.

  • CVE-2024-57095Jan 24, 2025
    risk 0.00cvss epss 0.01

    SQL injection vulnerability in Go-CMS v.1.1.10 allows a remote attacker to execute arbitrary code via a crafted payload.