CVE-2020-18647: 5none noneCms

High severity, CVSS 7.5. EPSS: 1.5% chance of exploitation in the next 30 days.

Information Disclosure in NoneCMS v1.3 allows remote attackers to obtain sensitive information via the component "/nonecms/vendor".

Affected products

  • 5none noneCms: version 1.3.0 only

Published 2021-06-22. Last modified 2026-06-17.