CVE-2021-32073: Dedecms

High severity, CVSS 8.8. EPSS: 1.2% chance of exploitation in the next 30 days.

DedeCMS V5.7 SP2 contains a CSRF vulnerability that allows a remote attacker to send a malicious request to to the web manager allowing remote code execution.

Affected products

Published 2021-05-15. Last modified 2026-06-17.