CVE-2025-14731EPSS p37.1%
CVE-2025-14731CVE-2025-14731
ctcms_project / ctcms
Description
A weakness has been identified in CTCMS Content Management System up to 2.1.2. This affects an unknown function in the library /ctcms/apps/libraries/CT_Parser.php of the component Frontend/Template Management Module. This manipulation causes improper neutralization of special elements used in a template engine. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be exploited.
Scoring
| CVSS | 6.3 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L |
| EPSS | 0.45% probability of exploitation · percentile 37.1% · 2026-10-10T12:00:23Z |
| Last modified | 2026-10-07 |