Vulnerabilities > GET Simple > Getsimplecms > 3.3.16

DATE CVE VULNERABILITY TITLE RISK
2024-01-08 CVE-2023-51246 Cross-site Scripting vulnerability in Get-Simple Getsimplecms 3.3.16
A Cross Site Scripting (XSS) vulnerability in GetSimple CMS 3.3.16 exists when using Source Code Mode as a backend user to add articles via the /admin/edit.php page.
network
low complexity
get-simple CWE-79
5.4
2023-11-17 CVE-2023-6188 Code Injection vulnerability in Get-Simple Getsimplecms 3.3.16/3.4.0A
A vulnerability was found in GetSimpleCMS 3.3.16/3.4.0a.
network
low complexity
get-simple CWE-94
critical
9.8