PT-2026-27232 · Opensource Workshop · Connect-Cms

Published

2026-03-23

·

Updated

2026-03-23

·

CVE-2026-32299

CVSS v3.1

7.5

High

AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Connect-CMS is a content management system. In versions on the 1.x series up to and including 1.41.0 and versions on the 2.x series up to and including 2.41.0, an improper authorization issue in the page content retrieval feature may allow retrieval of non-public information. Versions 1.41.1 and 2.41.1 contain a patch.

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2026-32299

Affected Products

Connect-Cms