Package impact

php Packagist / azuracast/azuracast

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2026-42606 high 8.8 8.8 1mo ago AzuraCast has Password Reset Poisoning via Untrusted X-Forwarded-Host Header that Leads to Account Takeover and 2FA Bypass
CVE-2026-42605 high 8.8 8.8 1mo ago AzuraCast has Path Traversal in `currentDirectory` Parameter that Enables Remote Code Execution via Media Upload
CVE-2025-67737 unknown 6mo ago AzuraCast Vulnerable to Pre-Auth File Deletion & Admin RCE
CVE-2023-2531 unknown 3y ago AzuraCast missing brute force prevention
CVE-2023-2191 unknown 3y ago AzuraCast/AzuraCast vulnerable to cross-site scripting