gakigaki
6 exploits
Active since Mar 2026
Connect CMS has SSRF in the External Page Migration Feature of its Page Management Plugin
CVSS 6.8
Connect-CMS has Arbitrary Code Execution by an Authenticated User in its Code Study Plugin
CVSS 8.8
Connect-CMS has DOM-based Cross-Site Scripting (XSS) in the Cabinet Plugin List View
CVSS 8.7
Connect CMS has SSRF in the External Page Migration Feature of its Page Management Plugin
CVSS 6.8
Connect-CMS 1.x-1.41.0/2.x-2.41.0 - Stored XSS
CVSS 8.2
Connect-CMS 1.x-1.41.0/2.x-2.41.0 - Privilege Escalation
CVSS 8.1