Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

dotCMS LLC

First CVE: May 21, 2008Active for: 18 yearsTotal CVEs: 58
59.7
VTI Score
TOP TARGET

dotCMS LLC maintains a content management system widely deployed in enterprise publishing and digital-experience platforms, where its vulnerability profile concentrates on a single product spanning a moderate volume of disclosures. Vulnerabilities affecting the vendor skew toward serious outcomes, with an elevated share reaching critical severity and a moderate tendency to acquire public exploit code. The exposure recurs through classic web-application weakness classes including cross-site scripting, SQL injection, path traversal, and unrestricted file uploads, reflecting the input-handling and file-processing demands inherent to a content-management platform. Defenders should prioritize this vendor's security updates for internet-facing instances and apply strict input validation and file-upload controls; current severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
58
Total CVEs
More Total CVEs than 99% of tracked vendors
4.5
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 97% of tracked vendors
6.9
Avg CVSS Score
Higher Avg CVSS Score than 48% of tracked vendors
1.7%
In CISA KEV
Higher KEV Rate than 99% of tracked vendors

Trends Over Time

The number and severity of CVEs published that impact products developed by dotCMS LLC over time

Volume of CVEsAvg CVSS Base Score
First CVE
May 21, 2008
18 years ago
Most Recent CVE
Jul 20, 2026
4 days ago

Self-Reporting Analysis

Of all the CVEs published by dotCMS LLC as a CNA, 66.7% affect products that dotCMS LLC develops as a vendor.

66.7%
33.3%
Self-reported: 6 (66.7%)
Third-party: 3 (33.3%)

Of all the CVEs published that affect products developed by dotCMS LLC, 10.3% are self-published by dotCMS LLC as a CNA.

10.3%
89.7%
Self-published: 6 (10.3%)
Other CNAs: 52 (89.7%)

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (58 CVEs).

58 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2022-26352CRITICAL
An issue was discovered in the ContentResource API in dotCMS 3.0 through 22.02. Attackers can craft a multipart form request to post a file whose filename is not initially sanitize
Jul 17, 20229.898YESYES
CVE-2020-6754CRITICAL
dotCMS before 5.2.4 is vulnerable to directory traversal, leading to incorrect access control. It allows an attacker to read or execute files under $TOMCAT_HOME/webapps/ROOT/assets
Feb 5, 20209.875NONO
CVE-2017-5344CRITICAL
An issue was discovered in dotCMS through 3.6.1. The findChildrenByFilter() function which is called by the web accessible path /categoriesServlet performs string interpolation and
Feb 17, 20179.844NOYES
CVE-2026-16337CRITICAL
Improper authorization in the ToolGroupResource and RoleAjax REST/DWR endpoints in dotCMS dotCMS 21.02 through 26.06.22-03 on all platforms allows a low-privileged authenticated ba
Jul 20, 20269.437NONO
CVE-2018-17422MEDIUM
dotCMS before 5.0.2 has open redirects via the html/common/forward_js.jsp FORWARD_URL parameter or the html/portlet/ext/common/page_preview_popup.jsp hostname parameter.
Mar 7, 20196.132NOYES
CVE-2016-2355CRITICAL
SQL injection vulnerability in the REST API in dotCMS before 3.3.2 allows remote attackers to execute arbitrary SQL commands via the stName parameter to api/content/save/1.
Dec 19, 20169.832NONO
CVE-2016-8902CRITICAL
SQL injection vulnerability in the categoriesServlet servlet in dotCMS before 3.3.1 allows remote not authenticated attackers to execute arbitrary SQL commands via the sort paramet
Nov 14, 20169.831NONO
CVE-2025-11165CRITICAL
A sandbox escape vulnerability exists in dotCMS’s Velocity scripting engine (VTools) that allows authenticated users with scripting privileges to bypass class and package restricti
Feb 24, 20269.930NONO
CVE-2022-45782HIGH
An issue was discovered in dotCMS core 5.3.8.5 through 5.3.8.15 and 21.03 through 22.10.1. A cryptographically insecure random generation algorithm for password-reset token generat
Feb 1, 20238.828NONO
CVE-2016-8907HIGH
SQL injection vulnerability in the "Content Types > Content Types" screen in dotCMS before 3.3.1 allows remote authenticated attackers to execute arbitrary SQL commands via the ord
Nov 14, 20168.828NONO
View all 58 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products58 CVEs
53%
31%
14%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local1 (1.7%)
Network53 (91.4%)
Unknown4 (6.9%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low53 (91.4%)
High1 (1.7%)
Unknown4 (6.9%)
User Interaction
None30 (51.7%)
Unknown4 (6.9%)
Required24 (41.4%)
Privileges Required
Low17 (29.3%)
High15 (25.9%)
None22 (37.9%)
Unknown4 (6.9%)

Exploit Exposure

Signals from CVEs in this vendor scope (58 CVEs).

CISA KEV
1 CVE
1.7% of CVEs· 99th percentile
Metasploit
1 CVE
1.7% of CVEs· 97th percentile
Nuclei
2 CVEs
3.4% of CVEs· 95th percentile
ExploitDB
2 CVEs
3.4% of CVEs· 75th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by dotCMS LLC.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by dotCMS LLC — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For dotCMS LLC's Products

View all 3 CNAs →

Top CWEs