Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
EN
中
Loading…
Packagist/automad/automad — 5 CVEs · VulnScope
pkg:Packagist/
automad/automad
5 total CVEs
HIGH
1
MEDIUM
3
LOW
1
✅ Check your installed version
Check
All known vulnerabilities
HIGH
7.5
CVE-2026-45332
Automad has Broken Access Control: Unauthenticated exposure of administrator bcrypt password hashes and TOTP secrets via public API endpoint
>= 2.0.0-alpha.1, < 2.0.0-beta.28
MEDIUM
6.8
CVE-2024-40400
Automad arbitrary file upload vulnerability
from 0, < 2.0.0-alpha.5
MEDIUM
4.8
CVE-2021-37502
Cross site scripting in automad/automad
from 0, < 1.8.0
MEDIUM
4.3
Cross-Site Request Forgery (CSRF) in automad/automad
from 0, < 2.0.0-alpha.1
LOW
3.7
Authenticated Blind SSRF in automad/automad
from 0, <= 1.10.9
CVE-2023-7038
CVE-2023-7037