statamic
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 34 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from July 24, 2017 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →Statamic CMS Unguarded Exposure of 2FA Recovery Codes via Antlers current_user Variable
Statamic CMS missing authorization on Control Panel fieldtype endpoints allows disclosure of restricted resources
Statamic CMS vulnerable to unsafe method invocation via collection sorting allows data destruction
Statamic: Unsafe method invocation via query value resolution allows data destruction
Statamic allows unauthorized content access through missing authorization in its revision controllers
Statamic's sensitive configuration values are exposed to content editors via Antlers-enabled fields
Statamic has an Open Redirect on unauthenticated endpoints via URL parsing differential
Statamic's live preview token bypasses content protection for unrelated entries
Statamic has Reflected XSS via unescaped redirect parameter in its password reset form tag
Statamic's Markdown preview endpoint exposes sensitive user data
Monitor statamic in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.