weblate
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 38 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from March 15, 2017 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →Weblate SSRF: outbound URL guard misses the NAT64 well-known prefix (64:ff9b::/96)
wlc: print_html outputs API data without HTML escaping, enabling stored XSS
Weblate is vulnerable to XSS via crafted Markdown
Weblate: Private Translation Enumeration via Screenshot API
Weblate is Vulnerable to Authenticated SSRF via Project Backup Import bypassing validate_repo_url
Weblate's API Token Not Invalidated on Password Change
Weblate: Prefix-Based Repository Boundary Check Bypass via Symlink/Junction Path Prefix Collision
Weblate: SSRF via the webhook add-on using unprotected fetch_url()
Weblate: Privilege escalation in the user API endpoint
Weblate: SSRF via Project-Level Machinery Configuration
Monitor weblate in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.