CVE-2025-25520: Seacms

Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.

Seacms <13.3 is vulnerable to SQL Injection in admin_pay.php.

Affected products

  • Seacms Seacms: up to and including 13.3

Published 2025-02-25. Last modified 2026-06-17.