CVE-2020-22198: Dedecms
Critical severity, CVSS 9.8. EPSS: 1.7% chance of exploitation in the next 30 days.
SQL Injection vulnerability in DedeCMS 5.7 via mdescription parameter to member/ajax_membergroup.php.
Affected products
- Dedecms Dedecms: version 5.7 only
Published 2021-06-16. Last modified 2026-06-17.