Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 20 Apr 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sixapart
Sixapart movable Type |
|
| CPEs | cpe:2.3:a:sixapart:movable_type:*:*:*:*:advanced:*:*:* cpe:2.3:a:sixapart:movable_type:*:*:*:*:premium_advanced:*:*:* cpe:2.3:a:sixapart:movable_type:9.0.5:*:*:*:premium_advanced:*:*:* cpe:2.3:a:sixapart:movable_type:9.0.6:*:*:*:premium_advanced:*:*:* cpe:2.3:a:sixapart:movable_type:9.1.0:*:*:*:advanced:*:*:* cpe:2.3:a:sixapart:movable_type:9.1.0:*:*:*:premium_advanced:*:*:* |
|
| Vendors & Products |
Sixapart
Sixapart movable Type |
Thu, 09 Apr 2026 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Six Apart
Six Apart movable Type Six Apart movable Type Premium (mt8-based) Six Apart movable Type Premium Advanced Edition |
|
| Vendors & Products |
Six Apart
Six Apart movable Type Six Apart movable Type Premium (mt8-based) Six Apart movable Type Premium Advanced Edition |
Wed, 08 Apr 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Code injection in Movable Type enables arbitrary Perl execution |
Wed, 08 Apr 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 08 Apr 2026 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Movable Type provided by Six Apart Ltd. contains a code injection vulnerability which may allow an attacker to execute arbitrary Perl script. | |
| Weaknesses | CWE-94 | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2026-04-08T13:22:04.832Z
Reserved: 2026-03-26T01:06:12.957Z
Link: CVE-2026-25776
Updated: 2026-04-08T13:22:01.041Z
Status : Analyzed
Published: 2026-04-08T09:16:20.360
Modified: 2026-04-20T17:21:58.630
Link: CVE-2026-25776
No data.
OpenCVE Enrichment
Updated: 2026-04-09T08:21:55Z