Craft CMS
70%
Total Score
43
51
80
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-292184 New craftcms/cms is vulnerable to Remote Code Execution in versions 4.8.0 - 4.18.5 and 5.0.0 - 5.10.12. | 4.8.0 - 4.18.55.0.0 - 5.10.12 | High |
AIKIDO-2026-465129 New craftcms/cms is vulnerable to Remote Code Execution in versions 5.0.0 - 5.10.11. | 5.0.0 - 5.10.11 | High |
AIKIDO-2026-368133 New craftcms/cms is vulnerable to Information Disclosure in versions 5.0.0 - 5.10.14. | 5.0.0 - 5.10.14 | Medium |
AIKIDO-2026-817335 New craftcms/cms is vulnerable to Authorization Bypass in versions 5.0.0 - 5.10.10. | 5.0.0 - 5.10.10 | High |
AIKIDO-2026-739799 New craftcms/cms is vulnerable to Remote Code Execution in versions 5.0.0 - 5.10.12. | 5.0.0 - 5.10.12 | High |
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
twig/twig Version ~2.14.1 | — | — |
symfony/yaml Version ^5.1.8 | — | — |
voku/stringy Version ^6.4.0 | — | — |
yiisoft/yii2 Version ~2.0.39.3 | — | — |
true/punycode Version ^2.1.1 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.