CVE-2026-80234: Cayin Technology Cayin CMS-SE
Medium severity, CVSS 5.3. EPSS: 0.5% chance of exploitation in the next 30 days.
CAYIN CMS-WS and CMS-SE developed by CAYIN Technology have a Missing Authentication vulnerability. Unauthenticated remote attackers can obtain media file lists via specific functionality, resulting in partial information disclosure.
Affected products
- Cayin Technology Cayin CMS-SE: up to and including 11.0.25336
- Cayin Technology Cayin CMS-Ws: up to and including 1.0.25336
Published 2026-08-26. Last modified 2026-09-03.