CVE-2026-0566

Source
https://cve.org/CVERecord?id=CVE-2026-0566
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-0566.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-0566
Published
2026-01-02T17:16:25.263Z
Modified
2026-03-14T15:05:30.910832Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

A security vulnerability has been detected in code-projects Content Management System 1.0. Impacted is an unknown function of the file /admin/edit_posts.php. The manipulation of the argument image leads to unrestricted upload. The attack is possible to be carried out remotely. The exploit has been disclosed publicly and may be used.

References

Affected packages

Git /

Affected ranges

Database specific

unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "1.0"
            }
        ]
    }
]
source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-0566.json"