CVE-2019-10653: Hsycms

Critical severity, CVSS 9.8. EPSS: 1.5% chance of exploitation in the next 30 days.

An issue was discovered in Hsycms V1.1. There is a SQL injection vulnerability via a /news/*.html page.

Affected products

  • Hsycms Hsycms: version 1.1 only

Published 2019-07-10. Last modified 2026-06-17.