Vulnerabilities > Tuzitio > Camaleon CMS > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-09-18 CVE-2024-46986 Path Traversal vulnerability in Tuzitio Camaleon CMS
Camaleon CMS is a dynamic and advanced content management system based on Ruby on Rails.
network
low complexity
tuzitio CWE-22
critical
9.9
2023-05-26 CVE-2023-30145 Code Injection vulnerability in Tuzitio Camaleon CMS
Camaleon CMS v2.7.0 was discovered to contain a Server-Side Template Injection (SSTI) vulnerability via the formats parameter.
network
low complexity
tuzitio CWE-94
critical
9.8