CVE-2026-80233: Cayin Technology Cayin CMS-SE

High severity, CVSS 7.2. EPSS: 0.8% chance of exploitation in the next 30 days.

CAYIN CMS-WS, CMS-SE, and SMP series products developed by CAYIN Technology have an Arbitrary File Upload vulnerability. Privileged remote attackers can upload and execute web shells backdoors, thereby enabling arbitrary code execution on the server.

Affected products

Published 2026-08-26. Last modified 2026-08-26.