CVE-2020-25453: Blackcat-CMS Blackcat CMS
High severity, CVSS 8.8. EPSS: 6.3% chance of exploitation in the next 30 days.
An issue was discovered in BlackCat CMS before 1.4. There is a CSRF vulnerability (bypass csrf_token) that allows remote arbitrary code execution.
Affected products
- Blackcat-CMS Blackcat CMS: before 1.4 (fixed in 1.4)
Published 2020-09-15. Last modified 2026-06-17.