Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Six Apart Ltd. — Vulnerabilities & Security Advisories 35

Browse all 35 CVE security advisories affecting Six Apart Ltd.. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Six Apart Ltd. is best known for developing Movable Type, a widely adopted content management system and blogging platform that enabled users to publish and manage web content. Historically, the software’s codebase has exhibited several critical security flaws, resulting in thirty-five recorded Common Vulnerabilities and Exposures. These defects predominantly involve remote code execution, cross-site scripting, and privilege escalation vulnerabilities, often stemming from insufficient input validation and improper access controls within the application’s architecture. While no single catastrophic data breach has defined the company’s public security history, the accumulation of these CVEs highlights systemic weaknesses in its development lifecycle. The persistent presence of these vulnerabilities suggests that legacy code maintenance and rigorous security auditing were not consistently prioritized, leaving deployed instances exposed to exploitation by attackers seeking to compromise server integrity or steal user data through standard web attack vectors.

CVE IDTitleCVSSSeverityPublished
CVE-2026-25776 Six Apart Movable Type 代码注入漏洞 — Movable TypeCWE-94 8.8AIHighAI2026-04-08
CVE-2026-33088 Six Apart Movable Type SQL注入漏洞 — Movable TypeCWE-89 9.8AICriticalAI2026-04-08
CVE-2026-24447 Movable Type 安全漏洞 — Movable Type (Software Edition)CWE-1236 8.6AIHighAI2026-02-04
CVE-2026-23704 Movable Type 代码问题漏洞 — Movable Type (Software Edition)CWE-434 5.4AIMediumAI2026-02-04
CVE-2026-22875 Movable Type 跨站脚本漏洞 — Movable Type (Software Edition)CWE-79 4.8AIMediumAI2026-02-04
CVE-2026-21393 Movable Type 跨站脚本漏洞 — Movable Type (Software Edition)CWE-79 5.4AIMediumAI2026-02-04
CVE-2025-62499 Six Apart Movable Type 跨站脚本漏洞 — Movable Type (Software Edition)CWE-79 5.4AIMediumAI2025-10-23
CVE-2025-54856 Six Apart Movable Type 跨站脚本漏洞 — Movable Type (Software Edition)CWE-79 5.4AIMediumAI2025-10-23
CVE-2025-55706 Movable Type 输入验证错误漏洞 — Movable Type (Software Edition)CWE-601 6.1 -2025-08-20
CVE-2025-53522 Movable Type 安全漏洞 — Movable Type (Software Edition)CWE-348 7.5 -2025-08-20
CVE-2025-24841 Six Apart Movable Type 跨站脚本漏洞 — Movable Type (8.4.x series)CWE-79 5.4 -2025-02-19
CVE-2025-25054 Six Apart Movable Type 跨站脚本漏洞 — Movable Type (8.4.x series)CWE-79 6.1 -2025-02-19
CVE-2025-22888 Six Apart Movable Type 跨站脚本漏洞 — Movable Type (8.4.x series)CWE-79 5.4 -2025-02-19
CVE-2023-45746 Six Apart Movable Type 安全漏洞 — Movable Type 7 (Movable Type 7 Series) 5.4 -2023-10-30
CVE-2022-45122 Six Apart Movable Type 跨站脚本漏洞 — Movable Type 6.1 -2022-12-07
CVE-2022-45113 Six Apart Movable Type 输入验证错误漏洞 — Movable Type 6.5 -2022-12-07
CVE-2022-43660 Six Apart Movable Type 代码注入漏洞 — Movable Type 7.2 -2022-12-07
CVE-2022-38078 Movable Type 代码注入漏洞 — Movable Type XMLRPC API 9.8 -2022-08-24
CVE-2020-5669 Six Apart Movable Type 跨站脚本漏洞 — Movable Type 5.4 -2021-10-26
CVE-2021-20837 Six Apart Movable Type 操作系统命令注入漏洞 — Movable Type 9.8 -2021-10-26
CVE-2021-20815 Six Apart Movable Type 跨站脚本漏洞 — Movable Type 6.1 -2021-08-26
CVE-2021-20814 Six Apart Movable Type 跨站脚本漏洞 — Movable Type 6.1 -2021-08-26
CVE-2021-20813 Six Apart Movable Type 跨站脚本漏洞 — Movable Type 6.1 -2021-08-26
CVE-2021-20812 Six Apart Movable Type 跨站脚本漏洞 — Movable Type 6.1 -2021-08-26
CVE-2021-20811 Six Apart Movable Type 跨站脚本漏洞 — Movable Type 6.1 -2021-08-26
CVE-2021-20810 Six Apart Movable Type 跨站脚本漏洞 — Movable Type 6.1 -2021-08-26
CVE-2021-20809 Six Apart Movable Type 跨站脚本漏洞 — Movable Type 6.1 -2021-08-26
CVE-2021-20808 Six Apart Movable Type 跨站脚本漏洞 — Movable Type 6.1 -2021-08-26
CVE-2021-20665 Six Apart Movable Type 跨站脚本漏洞 — Movable Type 6.1 -2021-03-05
CVE-2021-20664 Six Apart Movable Type 跨站脚本漏洞 — Movable Type 6.1 -2021-03-05

This page lists every published CVE security advisory associated with Six Apart Ltd.. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.