GHSA-r6vq-rwpg-jgv9MediumCVSS 7.3

A security flaw has been discovered in SeaCMS up to 13.6. Affected by this issue is some unknown...

Published
August 31, 2026
Last Modified
August 31, 2026

🔗 CVE IDs covered (1)

📋 Description

A security flaw has been discovered in SeaCMS up to 13.6. Affected by this issue is some unknown functionality of the file /zyapi.php?ac=videolist. Performing a manipulation of the argument ids results in sql injection. The attack can be initiated remotely. The exploit has been released to the public and may be used for attacks.

🔗 References (7)