LIVE · cybersecurity feed
Live wire
vendor

Dedecms

2 CVEs published in the last four months. Exploited flaws first.

Critical1
High1
Medium0
Exploited (KEV)0

All recent CVEs

CVECVSSSeverityProductSummaryPublished
CVE-2026-306949.8criticaldedecmsAn issue in DedeCMS v.5.7.118 and before allows a remote attacker to execute arbitrary code via the array_filter c170d ago
CVE-2026-298398.8highdedecmsDedeCMS v5.7.118 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability in /sys_task_add.php.166d ago

Filter the full tracker by Dedecms