HomeCVE-2025-15549

CVE-2025-15549

UNKNOWN
0.0CVSS
Published: 2026-01-29
Updated: 2026-01-30
AI Analysis

Description

FluentCMS 2026 contains a stored cross-site scripting vulnerability that allows authenticated administrators to upload SVG files with embedded JavaScript via the File Management module. Attackers can upload malicious SVG files that execute JavaScript in the browser of any user accessing the uploaded file URL.

CVSS Metrics

No CVSS metrics available for this version.

Metadata

Primary Vendor
UNKNOWN
Published
1/29/2026
Last Modified
1/30/2026
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

No affected products information available.

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief

CVE-CVE-2025-15549 | UNKNOWN Severity | CVEDatabase.com | CVEDatabase.com