webmin
Security Risk Profile
47
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 122 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from December 31, 1999 to present
122
Total CVEs
44
Critical+High
2
Exploited
26
Unpatched
Threat Assessment
Avg CVSS
6.6
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
26
Critical/High
Risk Level
47/100
medium
⚠️ 2 Active Exploits📈 1 in Last 30 Days
Severity Distribution
Critical
21High
23Medium
69Low
6Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
10Age Distribution
Common Weaknesses (CWE)
1
XSS
59
2
CSRF
8
3
OS Command Injection
7
4
Command Injection
3
5
Code Injection
2
Most Affected Products
1. webmin webmin403
2. Webmin Usermin215
3. Usermin Usermin127
4. Webmin Webmin117
5. Debian Debian Linux13
Recent Vulnerabilities
See more →CVE-2026-42210
CVSS 5.3medium
Webmin 2FA requirement bypass
7/20/2026🔧 No Patch
CVE-2026-56020
CVSS 9.2critical
Webmin HTTP header authentication bypass
6/18/2026🔧 No Patch
CVE-2026-56021
CVSS 6.9medium
Webmin information disclosure via regex pattern
6/18/2026🔧 No Patch
CVE-2026-56022
CVSS 6.9medium
Webmin MFA bypass
6/18/2026🔧 No Patch
CVE-2026-49103
CVSS 9.4critical
5/27/2026🔧 No Patch
CVE-2026-49102
CVSS 6.1medium
5/27/2026🔧 No Patch
CVE-2026-22678
CVSS 5.1medium
Webmin < 2.641 Stored XSS via System and Server Status
5/21/2026🔧 No Patch
CVE-2025-67738
CVSS 8.5high
12/11/2025🔧 No Patch
CVE-2025-61541
CVSS 7.1high
10/16/2025🔧 No Patch
ZDI-25-282
unknown
Webmin CRLF Injection Privilege Escalation Vulnerability
5/1/2025🔧 No Patch
Monitor webmin in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.