All 33 CVE vulnerabilities found in ci4ms, with AI-generated Chinese analysis, references, and POCs.
Vendor: ci4-cms-erp
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-27599 | CI4MS: System Settings (Mail Settings) Full Platform Compromise & Full Account Takeover for All-Roles & Privilege-Escalation via Stored DOM XSS CWE-79 | 4.7 | Medium | 2026-03-30 |
| CVE-2026-25510 | CI4MS Vulnerable to Remote Code Execution (RCE) via Arbitrary File Creation and Save in File Editor CWE-434 | 10.0 | Critical | 2026-02-03 |
| CVE-2026-25509 | CI4MS Vulnerable to User Email Enumeration via Password Reset Flow CWE-204 | 5.3 | Medium | 2026-02-03 |
All 33 known CVE vulnerabilities affecting ci4ms with full Chinese analysis, references, and POCs where available.