CVE-2026-25870 | doramart DoraCMS up to 3.1 UEditor Remote Image Fetch server-side request forgery (Issue 268)
A vulnerability classified as critical was found in doramart DoraCMS up to 3.1. Impacted is an unknown function of the component UEditor Remote Image Fetch. Executing a manipulation can lead to server-side request forgery.
The identification of this vulnerability is CVE-2026-25870. The attack may be launched remotely. There is no exploit available.