Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Errors11

#25889of 53,622
9.8Total CVSS
Vulnerabilities · 1
PT-2026-38442
9.8
2026-05-07
Unknown · Chestnutcms · CVE-2026-36458
**Name of the Vulnerable Software and Affected Versions** ChestnutCMS version 1.5.10 **Description** A SQL injection issue exists where the `content` parameter of the 'cms content' tag can be manipulated within the admin backend. This allows the parameter to be injected into a SQL query during template rendering. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.