Mautic Open Source Distribution
93%
Total Score
100
94
80
100
| Title | Versions | Severity |
|---|---|---|
CVE-2026-9811 mautic/core is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 7.0.0 - 7.1.2. | 7.0.0 - 7.1.2 | Medium |
CVE-2026-9809 mautic/core is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 7.0.0 - 7.1.2. | 7.0.0 - 7.1.2 | High |
CVE-2026-9808 mautic/core is vulnerable to Incorrect Authorization in versions 7.0.0 - 7.1.2. | 7.0.0 - 7.1.2 | High |
CVE-2026-9559 mautic/core is vulnerable to Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in versions 7.0.0 - 7.1.2. | 7.0.0 - 7.1.2 | Critical |
CVE-2026-9557 mautic/core is vulnerable to Server-Side Request Forgery (SSRF) in versions 4.0.0 - 4.4.13, 5.0.0 - 5.2.11, 6.0.0 - 6.0.9 and 7.0.0 - 7.1.2. | 4.0.0 - 4.4.135.0.0 - 5.2.116.0.0 - 6.0.9 +1 more | Medium |
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
mautic/core-lib Version ^7.0 | — | — |
composer/installers Version ^2.3 | — | — |
cweagans/composer-patches Version ^1.7.3 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant