CVE-2025-14731: Ctcms Project Ctcms
High severity, CVSS 7.2. EPSS: 0.4% chance of exploitation in the next 30 days.
A weakness has been identified in CTCMS Content Management System up to 2.1.2. This affects an unknown function in the library /ctcms/apps/libraries/CT_Parser.php of the component Frontend/Template Management Module. This manipulation causes improper neutralization of special elements used in a template engine. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be exploited.
Affected products
- Ctcms Project Ctcms: up to and including 2.1.2
Published 2025-12-16. Last modified 2026-10-07.