pkg:Packagist/krayin/laravel-crm
共 9 筆 CVEHIGH5MEDIUM3LOW1
✅ 檢查你的版本
所有已知漏洞
- HIGH8.8CVE-2026-38529Webkul Krayin CRM has Broken Object-Level Authorization (BOLA) in the /Settings/UserController.phpfrom 0, <= 2.2.0
- from 0, <= 2.2.0
- HIGH8.1CVE-2026-36340Krayin CRM allows a remote attacker to execute arbitrary code via compose email function>= 2.1.5, < 2.1.6
- HIGH8.1CVE-2026-38532Webkul Krayin CRM has Broken Object-Level Authorization (BOLA) in the /Contact/Persons/PersonController.phpfrom 0, <= 2.2.0
- HIGH8.1CVE-2026-38530Webkul Krayin CRM has Broken Object-Level Authorization (BOLA) in the /Controllers/Lead/LeadController.phpfrom 0, <= 2.2.0
- from 0, < 1.2.2
- MEDIUM5.4CVE-2026-36341Webkul Krayin CRM is Vulnerable to Cross-Site Scripting in the /admin/activities/create endpoint>= 2.1.5, < 2.1.6
- MEDIUM4.8CVE-2024-45932Krayin CRM vulnerable to Cross Site Scripting (XSS) via the organization namefrom 0, <= 1.3.0
- from 0, <= 2.2.0