Ujcms Ujcms

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Ujcms.

By the Year

In 2026 there have been 2 vulnerabilities in Ujcms with an average score of 5.9 out of ten. Ujcms did not have any published security vulnerabilities last year. That is, 2 more vulnerabilities have already been reported in 2026 as compared to last year.

Year Vulnerabilities Average Score
2026 2 5.85
2025 0 0.00
2024 5 7.03
2023 5 7.94

It may take a day or so for new Ujcms vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Ujcms Security Vulnerabilities

UJCMS 10.0.2 Remote Injection via ImportDataCtrl
CVE-2026-2954 6.3 - Medium - February 22, 2026

A vulnerability was found in Dromara UJCMS 10.0.2. Impacted is the function importChanel of the file /api/backend/ext/import-data/import-channel of the component ImportDataController. Performing a manipulation of the argument driverClassName/url results in injection. It is possible to initiate the attack remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.

Injection

Path Traversal in Dromara UJCMS 101.2 Template Handler deleteDirectory
CVE-2026-2953 5.4 - Medium - February 22, 2026

A vulnerability has been found in Dromara UJCMS 101.2. This issue affects the function deleteDirectory of the file WebFileTemplateController.delete of the component Template Handler. Such manipulation leads to path traversal. The attack may be performed from remote. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Directory traversal

UJCMS 9.6.3: Stored XSS via Authenticated SVG File Upload
CVE-2024-55451 - December 16, 2024

A Stored Cross-Site Scripting (XSS) vulnerability exists in authenticated SVG file upload and viewing functionality in UJCMS 9.6.3. The vulnerability arises from insufficient sanitization of embedded attributes in uploaded SVG files. When a maliciously crafted SVG file is viewed by other backend users, it allows authenticated attackers to execute arbitrary JavaScript in the context of other backend users' browsers, potentially leading to the theft of sensitive tokens.

UJCMS URL Redirection Vulnerability in Block/Carousel Item Handling
CVE-2024-55452 - December 16, 2024

A URL redirection vulnerability exists in UJCMS 9.6.3 due to improper validation of URLs in the upload and rendering of new block / carousel items. This vulnerability allows authenticated attackers to redirect unprivileged users to an arbitrary, attacker-controlled webpage. When an authenticated user clicks on the malicious block item, they are redirected to the arbitrary untrusted domains, where sensitive tokens, such as JSON Web Tokens, can be stolen via a crafted webpage.

Auth Bypass in Dromara UJCMS <9.6.3 User ID Handler
CVE-2024-12483 5.9 - Medium - December 12, 2024

A vulnerability classified as problematic has been found in Dromara UJCMS up to 9.6.3. This affects an unknown part of the file /users/id of the component User ID Handler. The manipulation leads to authorization bypass. It is possible to initiate the attack remotely. The complexity of an attack is rather high. The exploitability is told to be difficult. The exploit has been disclosed to the public and may be used.

Insecure Direct Object Reference / IDOR

Ujcms 8.0.2 File Upload RCE via Crafted File
CVE-2023-51806 5.4 - Medium - January 12, 2024

File Upload vulnerability in Ujcms v.8.0.2 allows a local attacker to execute arbitrary code via a crafted file.

Unrestricted File Upload

Ujcms 8.0.2 XFF Header Spoofing Enables Remote Code Exec
CVE-2023-51350 9.8 - Critical - January 11, 2024

A spoofing attack in ujcms v.8.0.2 allows a remote attacker to obtain sensitive information and execute arbitrary code via a crafted script to the X-Forwarded-For function in the header.

Authentication Bypass by Spoofing

File Upload Vulnerability in ujCMS 6.0.2 API Endpoint
CVE-2023-34747 9.8 - Critical - June 14, 2023

File upload vulnerability in ujcms 6.0.2 via /api/backend/core/web-file-upload/upload.

Unrestricted File Upload

Disclosure in Ujcms v6.0.2 via dir param /download-zip
CVE-2023-34878 7.5 - High - June 14, 2023

An issue was discovered in Ujcms v6.0.2 allows attackers to gain sensitive information via the dir parameter to /api/backend/core/web-file-html/download-zip.

Directory Traversal via Rename in ujcms 6.0.2
CVE-2023-34865 9.8 - Critical - June 14, 2023

Directory traversal vulnerability in ujcms 6.0.2 allows attackers to move files via the rename feature.

Directory traversal

UJCMS <=6.0.2 ZIP Package Handler info disclosure via dir arg
CVE-2023-3231 6.5 - Medium - June 14, 2023

A vulnerability has been found in UJCMS up to 6.0.2 and classified as problematic. This vulnerability affects unknown code of the component ZIP Package Handler. The manipulation of the argument dir leads to information disclosure. The attack can be initiated remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used. Upgrading to version 7.0.0 is able to address this issue. It is recommended to upgrade the affected component. VDB-231502 is the identifier assigned to this vulnerability.

UJCMS 4.1.3 XSS via URL param in Add New Articles
CVE-2023-24369 6.1 - Medium - February 17, 2023

A cross-site scripting (XSS) vulnerability in UJCMS v4.1.3 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the URL parameter under the Add New Articles function.

XSS

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Ujcms or by Ujcms? Click the Watch button to subscribe.

Ujcms
Vendor

Ujcms
Product

subscribe