Modular CodeIgniter 4 CMS featuring RBAC admin, theming, blog/page management, elFinder media integration, and CLI tooling for rapid customization.
ci4-cms-erp/ci4ms has critical vulnerabilities — do not use
Update to >= 31.0.0.0 to fix known vulnerabilities
| Severity | ID | Summary | Fixed in |
|---|---|---|---|
| medium | CVE-2026-34561 | CI4MS: System Settings (Social Media Management) Full Platform Compromise & Full Account Takeover for All-Roles & Privilege-Escalation via Stored DOM XSS | 31.0.0 |
| critical | CVE-2026-34989 | CI4MS: Profile & User Management Full Account Takeover for All-Roles & Privilege-Escalation via Stored DOM XSS | 31.0.0.0 |
Get this data programmatically — free, no authentication.
curl https://depscope.dev/api/check/composer/ci4-cms-erp/ci4msLast updated · 2026-04-19T00:59:40+00:00