CVE-2024-46372: Dedecms

Medium severity, CVSS 6.1. EPSS: 0.3% chance of exploitation in the next 30 days.

DedeCMS 5.7.115 is vulnerable to Cross Site Scripting (XSS) via the advertisement code box in the advertisement management module.

Affected products

  • Dedecms Dedecms: version 5.7.115 only

Published 2024-09-18. Last modified 2026-06-17.