CVE-2024-41444: Seacms

Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.

SeaCMS v12.9 has a SQL injection vulnerability in the key parameter of /js/player/dmplayer/dmku/index.php?ac=so.

Affected products

  • Seacms Seacms: version 12.9 only

Published 2024-08-26. Last modified 2026-06-17.