CVE-2026-70554 | MaxSite CMS up to 109.5 unserialize maxsite_comuser deserialization

SecurityVulns

A vulnerability was found in MaxSite CMS up to 109.5. It has been classified as critical. Affected by this vulnerability is the function unserialize. This manipulation of the argument maxsite_comuser causes deserialization.

This vulnerability is tracked as CVE-2026-70554. The attack is possible to be carried out remotely. No exploit exists.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More