CVE-2024-48652: Tuzitio Camaleon CMS

Medium severity, CVSS 4.8. EPSS: 1.1% chance of exploitation in the next 30 days.

Cross Site Scripting vulnerability in camaleon-cms v.2.7.5 allows remote attacker to execute arbitrary code via the content group name field.

Affected products

  • Tuzitio Camaleon CMS: version 2.7.5 only

Published 2024-10-22. Last modified 2026-06-17.