CVE-2026-38429 - OpenCMS XXE Injection
CVE ID :CVE-2026-38429
Published : May 5, 2026, 5:17 p.m. | 59 minutes ago
Description :OpenCMS v20 and before is vulnerable to XML External Entity (XXE) in the Admin Import DB feature due to insecure XML parsing of user supplied .zip files containing a manifest.xml.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : May 5, 2026, 5:17 p.m. | 59 minutes ago
Description :OpenCMS v20 and before is vulnerable to XML External Entity (XXE) in the Admin Import DB feature due to insecure XML parsing of user supplied .zip files containing a manifest.xml.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...