Intelligence View
CVE-2026-25870 | doramart DoraCMS up to 3.1 UEditor Remote Image Fetch server-side request forgery (Issue 268)
A vulnerability classified as critical was found in doramart DoraCMS up to 3.1. Impacted is an unknown function of the component UEditor Remote Image Fetch. Executing a manipulation can lead to server-side request forgery. The…
The identification of this vulnerability is CVE-2026-25870. The attack may be launched remotely. There is no exploit available.
2. Cyber Threat Intelligence & Forensik
3. Compliance, SLA & Vendor Adherence
Hersteller-Sicherheitsmeldungen & Patch-Status
Öffentliche PoCs existieren. Isolieren Sie das System oder wenden Sie Micro-Segmentierungsregeln an, bis offizielle Patches vorliegen.
-
Upstream-Referenz (Code-Hosting, kein Advisory)github.com
-
Web Referencewww.doracms.net