Krayin CRM
100%
Total Score
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2026-36341 krayin/laravel-crm is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 2.1.5 - 2.1.5. | 2.1.5 - 2.1.5 | Medium |
CVE-2026-36340 krayin/laravel-crm is vulnerable to Improper Control of Generation of Code ('Code Injection') in versions 2.1.5 - 2.1.5. | 2.1.5 - 2.1.5 | High |
CVE-2026-38527 krayin/laravel-crm is vulnerable to Server-Side Request Forgery (SSRF) in versions 0.0.0 - 2.2.0. | 0.0.0 - 2.2.0 | High |
CVE-2026-38530 krayin/laravel-crm is vulnerable to Authorization Bypass Through User-Controlled Key in versions 0.0.0 - 2.2.0. | 0.0.0 - 2.2.0 | High |
CVE-2026-38532 krayin/laravel-crm is vulnerable to Authorization Bypass Through User-Controlled Key in versions 0.0.0 - 2.2.0. | 0.0.0 - 2.2.0 | High |
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
mpdf/mpdf Version ^8.2 | — | — |
laravel/ui Version ^4.6 | — | — |
konekt/concord Version ^1.17 | — | — |
laravel/tinker Version ^2.10 | — | — |
league/fractal Version ^0.21.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant