Filtered by vendor Rhymix Subscriptions
Filtered by product Rhymix Subscriptions
Total 4 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-55089 1 Rhymix 1 Rhymix 2025-06-24 9.1 Critical
Rhymix 2.1.19 is vulnerable to Server-Side Request Forgery (SSRF) in the background import data function.
CVE-2025-45242 1 Rhymix 1 Rhymix 2025-06-17 7.7 High
Rhymix v2.1.22 was discovered to contain an arbitrary file deletion vulnerability via the procFileAdminEditImage method in /file/file.admin.controller.php.
CVE-2018-19601 1 Rhymix 1 Rhymix 2024-11-21 N/A
Rhymix CMS 1.9.8.1 allows SSRF via an index.php?module=admin&act=dispModuleAdminFileBox SVG upload.
CVE-2018-19600 1 Rhymix 1 Rhymix 2024-11-21 N/A
Rhymix CMS 1.9.8.1 allows XSS via an index.php?module=admin&act=dispModuleAdminFileBox SVG upload.