216.73.216.36

CVE-2026-40306

· Published 17/04/2026 22:16 · Modified 17/04/2026 22:16

Labels: CVE-2026-40306 2026-04-17CVE-2026-40306CWE-330[email protected]

Essential information

Published
17/04/2026 22:16
Modified
17/04/2026 22:16
Author
Creator
CVSS
6.9 MEDIUM (v3) 6.9 MEDIUM (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem. All new installations of DNN 10.x.x - 10.2.1 have the same Host GUID. This does not affect upgrades from 9.x.x. Version 10.2.2 patches the issue.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
dnn / dotnetnuke cpe:2.3:a:dnn:dotnetnuke:10.2.1-*:*:*:*:*:*:*
dnn / dotnetnuke cpe:2.3:a:dnn:dotnetnuke:10.2.2:*:*:*:*:*:*:*

References