Huocms is a content management system whose vulnerability profile centers on file-upload handling mechanisms. The recurring exposure involves unrestricted upload of files with dangerous types, a characteristic application-layer weakness in systems that accept user-supplied content; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Huocms over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-46080MEDIUM HuoCMS V3.5.1 has a File Upload Vulnerability. An attacker can exploit this flaw to bypass whitelist restrictions and craft malicious files with specific suffixes, thereby gaining | May 29, 2025 | 5.3 | 17 | NO | NO |
CVE-2025-46078MEDIUM HuoCMS V3.5.1 and before is vulnerable to file upload, which allows attackers to take control of the target server | May 29, 2025 | 5.3 | 17 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Huocms.
Media articles that mention a CVE ID that affects a product developed by Huocms — matched by CVE ID, not by vendor name.