CVE-2023-31903: Freeguppy Guppy

Critical severity, CVSS 9.8. EPSS: 2.1% chance of exploitation in the next 30 days.

GuppY CMS 6.00.10 is vulnerable to Unrestricted File Upload which allows remote attackers to execute arbitrary code by uploading a php file.

Affected products

Published 2023-05-17. Last modified 2026-06-17.