CVE-2023-34880: Cmseasy
Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.
cmseasy v7.7.7.7 20230520 was discovered to contain a path traversal vulnerability via the add_action method at lib/admin/language_admin.php. This vulnerability allows attackers to execute arbitrary code and perform a local file inclusion.
Affected products
- Cmseasy Cmseasy: version 7.7.7.7 only
Published 2023-06-15. Last modified 2026-06-17.