CVE-2024-55085: Getsimple-CE Getsimple CMS

Critical severity, CVSS 9.8. EPSS: 0.9% chance of exploitation in the next 30 days.

GetSimple CMS CE 3.3.19 suffers from arbitrary code execution in the template editing function in the background management system, which can be used by an attacker to implement RCE.

Affected products

Published 2024-12-16. Last modified 2026-06-17.