Zwiicms is a niche content-management system that exhibits a focused vulnerability footprint centered on its core product, with observed weaknesses clustering around improper access control, authorization flaws, and locking mechanisms. Current severity, exploitation status, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Zwiicms over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-57130HIGH An Incorrect Access Control vulnerability in the user management component of ZwiiCMS up to v13.6.07 allows a remote, authenticated attacker to escalate their privileges. By sendin | Nov 5, 2025 | 8.8 | 31 | NO | NO |
CVE-2025-34467MEDIUM ZwiiCMS versions prior to 13.7.00 contain a denial-of-service vulnerability in multiple administrative endpoints due to improper authorization checks combined with flawed resource | Dec 31, 2025 | 4.3 | 19 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Zwiicms.
Media articles that mention a CVE ID that affects a product developed by Zwiicms — matched by CVE ID, not by vendor name.