FeehiCMS vulnerabilities
CVEs whose affected-version data names the FeehiCMS package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
3 CVEsRSS
CVE-2026-86241Medium· 4.3PoCA weakness has been identified in liufee FeehiCMS up to 2.1.1
A weakness has been identified in liufee FeehiCMS up to 2.1.1. This impacts an unknown function of the file environments/prod/backend/config/main-local.php of the component Cookie Validation. This manipulation of the argument cookieValid…
CVE-2026-86240Medium· 4.7PoCA security flaw has been discovered in liufee FeehiCMS up to 2.1.1
A security flaw has been discovered in liufee FeehiCMS up to 2.1.1. This affects the function catchImage of the file backend/widgets/ueditor/Uploader.php of the component UEditor. The manipulation of the argument source[] results in serv…
CVE-2026-86239Medium· 5.3PoCA vulnerability was identified in liufee FeehiCMS up to 2.1.1
A vulnerability was identified in liufee FeehiCMS up to 2.1.1. The impacted element is the function UeditorAction::init of the file backend/widgets/ueditor/UeditorAction.php of the component UEditor Widget. The manipulation leads to unre…