craftcms Latest Vulnerabilities
Latest vulnerabilities published by craftcms
Vulnerability Published:
ποΈ Published
- Anytime
Sort By:
ποΈ Published Date
- Descending
Authorization Bypass in Craft CMS Affecting Category Management
CVE-2026-72785CraftcmsCms9.3CRITICALServer-Side Request Forgery in Craft CMS by Craft
CVE-2026-72784CraftcmsCms6.9MEDIUMPath Traversal Vulnerability in Craft CMS by Pixel & Tonic
CVE-2026-72783CraftcmsCms6.9MEDIUMEnvironment Variable Leak in Craft CMS by Craft
CVE-2026-72782CraftcmsCms7.1HIGHRemote Code Execution Vulnerability in Craft CMS by Pixel & Tonic
CVE-2026-72781CraftcmsCms8.7HIGHWebAuthn Assertion Replay Vulnerability in Craft CMS by Pixel & Tonic
CVE-2026-72780CraftcmsCms7.1HIGHArbitrary File Read Vulnerability in Craft CMS by Craft
CVE-2026-72779CraftcmsCms8.7HIGHAuthenticated Remote Code Execution in Craft CMS by Craft
CVE-2026-72778CraftcmsCms8.7HIGHAuthorization Issue in Craft CMS Affects Multiple Versions
CVE-2026-50282CraftcmsCms4.9MEDIUMMass-assignment Flaw in Craft CMS Affecting Multiple Versions
CVE-2026-50281CraftcmsCms7.1HIGHAuthorization Bypass in Craft CMS by Pixel & Tonic
CVE-2026-50280CraftcmsCms6MEDIUMAuthorization Bypass in Craft CMS Affects Entry Permissions
CVE-2026-50279CraftcmsCms7.6HIGHUnsandboxed Twig Code Execution in Craft CMS
CVE-2026-55794CraftcmsCms8.7HIGHFile Reading Vulnerability in Craft CMS Affects User Control Panels
CVE-2026-55792CraftcmsCms6MEDIUMServer-Side Request Forgery and JavaScript Injection in Craft CMS 4.x and 5.x
CVE-2026-55791CraftcmsCms6.9MEDIUMCross-Site Scripting Vulnerability in Craft CMS by Pixel & Tonic
CVE-2026-55790CraftcmsCms7.4HIGHPrivilege Escalation Vulnerability in Craft CMS by Pixel & Tonic
CVE-2026-50284CraftcmsCms7.1HIGHAuthorization Flaw in Craft CMS Allows Unauthorized File Deletion
CVE-2026-50283CraftcmsCms5.3MEDIUMCross-Site Scripting Vulnerability in Craft CMS by Pixel & Tonic
CVE-2026-55793CraftcmsCms5.9MEDIUMAuthenticated Path Traversal Vulnerability in Craft CMS by Pixel & Tonic
CVE-2026-56394CraftcmsCms7.1HIGHStored Cross-Site Scripting Vulnerabilities in Craft CMS by Pixel & Tonic
CVE-2026-56393CraftcmsCms4.6MEDIUMAuthorization Bypass Vulnerability in Craft CMS by Craft
CVE-2026-56385CraftcmsCms5.3MEDIUMMissing Authorization Vulnerability in Craft CMS
CVE-2026-56384CraftcmsCms5.3MEDIUMStored Cross-Site Scripting in Craft CMS Editable Table Component
CVE-2026-56383CraftcmsCms4.6MEDIUMRemote Code Execution Vulnerability in Craft CMS by Craft
CVE-2026-56382CraftcmsCms8.6HIGH