CVE-2020-25453: Blackcat-CMS Blackcat CMS

High severity, CVSS 8.8. EPSS: 6.3% chance of exploitation in the next 30 days.

An issue was discovered in BlackCat CMS before 1.4. There is a CSRF vulnerability (bypass csrf_token) that allows remote arbitrary code execution.

Affected products

Published 2020-09-15. Last modified 2026-06-17.