Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-30995 1 Slah Cms 1 Slah Cms 2026-04-15 8.6 High
Slah CMS v1.5.0 and below was discovered to contain a SQL injection vulnerability via the id parameter in the vereador_ver.php endpoint.
CVE-2026-30993 1 Slah Cms 1 Slah Cms 2026-04-15 N/A
Slah CMS v1.5.0 and below was discovered to contain a remote code execution (RCE) vulnerability in the session() function at config.php. This vulnerability is exploitable via a crafted input.