Vulnerabilities > Tuzitio > Camaleon CMS > 2.7.5

DATE CVE VULNERABILITY TITLE RISK
2024-10-22 CVE-2024-48652 Cross-site Scripting vulnerability in Tuzitio Camaleon CMS 2.7.5
Cross Site Scripting vulnerability in camaleon-cms v.2.7.5 allows remote attacker to execute arbitrary code via the content group name field.
network
low complexity
tuzitio CWE-79
4.8
2024-09-18 CVE-2024-46986 Path Traversal vulnerability in Tuzitio Camaleon CMS
Camaleon CMS is a dynamic and advanced content management system based on Ruby on Rails.
network
low complexity
tuzitio CWE-22
critical
9.9