Semcms
This hub aggregates every CVE we track for Semcms, a product in the web cms plugins space. Use it to gauge the current risk picture and drill into individual advisories.
Web & CMS Pluginsweb app
59
CVEs tracked
20
Critical
10
High
0
In CISA KEV
Severity distribution
MEDIUM28CRITICAL20HIGH10LOW1
Monthly trend
0
1
1
1
0
1
0
0
0
9
0
0
0
0
0
1
0
0
0
0
0
0
0
0
2024-102026-09
Latest CVEs
The 15 most recently published vulnerabilities affecting Semcms.
- CVE-2026-1552SEMCMS SEMCMS_Info.php sql injection6.3
- CVE-2025-51655SemCms v5.0 was discovered to contain a SQL injection vulnerability via the pid parameter at SEMCMS_Quanxian.php.5.4
- CVE-2025-51653SemCms v5.0 was discovered to contain a SQL injection vulnerability via the pid parameter at SEMCMS_ct.php.5.4
- CVE-2025-51658SemCms v5.0 was discovered to contain a SQL injection vulnerability via the ID parameter at SEMCMS_InquiryView.php.5.4
- CVE-2025-51656SemCms v5.0 was discovered to contain a SQL injection vulnerability via the ID parameter at SEMCMS_Link.php.5.4
- CVE-2025-51657SemCms v5.0 was discovered to contain a SQL injection vulnerability via the lgid parameter at SEMCMS_Link.php.5.4
- CVE-2025-51652SemCms v5.0 was discovered to contain a SQL injection vulnerability via the pid parameter at SEMCMS_Categories.php.5.4
- CVE-2025-51660SemCms v5.0 was discovered to contain a SQL injection vulnerability via the lgid parameter at SEMCMS_Products.php.5.4
- CVE-2025-51654SemCms v5.0 was discovered to contain a SQL injection vulnerability via the pid parameter at SEMCMS_Infocategories.php.5.4
- CVE-2025-51659SemCms v5.0 was discovered to contain a SQL injection vulnerability via the ID parameter at SEMCMS_Products.php.5.4
- CVE-2025-25686semcms <=5.0 is vulnerable to SQL Injection in SEMCMS_Fuction.php.9.8
- CVE-2024-13193SEMCMS Image Library Management Page SEMCMS_Images.php sql injection6.3
- CVE-2024-53502Seecms v4.8 was discovered to contain a SQL injection vulnerability in the SEMCMS_SeoAndTag.php page.3.8
- CVE-2024-52725SemCms v4.8 was discovered to contain a SQL injection vulnerability. This allows an attacker to execute arbitrary code via the ldgid parameter in the SEMCMS_SeoAndTag.php component.4.9
- CVE-2024-46103SEMCMS 4.8 is vulnerable to SQL Injection via SEMCMS_Main.php.9.8
Product normalization is registry-driven with AI assist and human review. How it works