Package impact
Packagist / froxlor/froxlor
| CVE | Severity | CVSS | Risk | Flags | OS | Vendor | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2016-5100 | critical | 9.8 | 9.8 | 9y ago | Froxlor guessable password reset token | |||
| CVE-2026-41237 | unknown | — | — | 6d ago | Froxlor is open source server administration software. In version 2.3.6 and earlier, the LOC record regex uses `\s+` which matches newlines (allowing embedded newlines to pass), TLSA `matchingType=0`… | |||
| CVE-2026-41235 | unknown | — | — | 6d ago | Froxlor is open source server administration software. Version 2.3.6 lets administrators configure `system.available_shells` as the approved shell list that customers may assign to FTP users. However… |