CVE-2026-80233: Cayin Technology Cayin CMS-SE
High severity, CVSS 7.2. EPSS: 0.8% chance of exploitation in the next 30 days.
CAYIN CMS-WS, CMS-SE, and SMP series products developed by CAYIN Technology have an Arbitrary File Upload vulnerability. Privileged remote attackers can upload and execute web shells backdoors, thereby enabling arbitrary code execution on the server.
Affected products
- Cayin Technology Cayin CMS-SE: up to and including 11.0.25336
- Cayin Technology Cayin CMS-Ws: up to and including 1.0.25336
- Cayin Technology Cayin Smp: up to and including 4.0.25336
Published 2026-08-26. Last modified 2026-08-26.