Filter
-Infinity
0

Uptime KumaUptime Kuma >== 1.23.0 has a ReDoS vulnerability, specifically when an administrator creates a notif…

EPSS
0.03%
First published (updated )

Uptime KumaInsecure permissions in kuma v2.7.0 allows attackers to access sensitive data and escalate privilege…

8.8
First published (updated )

Docke.kumaUptime Kuma Missing Origin Validation in WebSockets

8.8
First published (updated )

npm/uptime-kumaUptime Kuma Password Change Vulnerability

7.8
First published (updated )

npm/uptime-kumaAttribute Injection leading to XSS(Cross-Site-Scripting) in uptime-kuma

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

npm/uptime-kumaUptime Kuma has Persistentent User Sessions

7.8
First published (updated )

npm/uptime-kumaUptime Kuma authenticated path traversal via plugin repository name may lead to unavailability or data loss

8.1
First published (updated )

npm/uptime-kumaUptime Kuma vulnerable to authenticated remote code execution via malicious plugin installation

8.8
First published (updated )

Uptime KumaXSS

First published (updated )

Uptime KumaPersistent Cross site scripting (XSS) in Uptime Kuma

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Uptime KumaPersistent Cross site scripting (XSS) through description in status page in Uptime Kuma

First published (updated )

Uptime Kumauptimed before 0.4.6-r1 on Gentoo allows local users (with access to the uptimed user account) to ga…

7.8
First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203