CVE-2024-27623

5.9MEDIUM

CMS Made Simple version 2.2.19 is vulnerable to Server-Side Template Injection (SSTI). The vulnerability exists within the Design Manager, particularly when editing the Breadcrumbs.

Published: 3/5/2024Updated: 12/17/2025

Description

CMS Made Simple version 2.2.19 is vulnerable to Server-Side Template Injection (SSTI). The vulnerability exists within the Design Manager, particularly when editing the Breadcrumbs.

AI AnalysisPowered by AI

Affected Products

cmsmadesimplecms_made_simple
2.2.19

References