This page aggregates publicly disclosed CVE and security risk information related to modstart, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2025-55824 | ModStartCMS v9.5.0 has an arbitrary file write vulnerability, which allows attackers to write malicious files and execute malicious commands to obtain sensitive data on the server. | [email protected] | 6.5 | 0.07% | 2025-09-02 | 2025-09-05 |
| CVE-2024-46331 | ModStartCMS v8.8.0 was discovered to contain an open redirect vulnerability in the redirect parameter at /admin/login. This vulnerability allows attackers to redirect users to an arbitrary website via a crafted URL. | [email protected] | 7.2 | 0.09% | 2024-09-27 | 2025-04-28 |