CVE-2026-27202: Getsimple-CE Getsimple CMS
High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.
GetSimple CMS is a content management system. All versions of GetSimple CMS have a flaw in the Uploaded Files feature that allows for arbitrary file reads. This issue has not been fixed at the time of publication.
Affected products
- Getsimple-CE Getsimple CMS: version 3.3.22 only
Published 2026-02-21. Last modified 2026-06-17.