Fiche vulnérabilité
CVE-2026-42051 : faille moyenne getkirby kirby (CVSS 4.3)
Description
Kirby is an open-source content management system. Prior to versions 4.9.0 and 5.4.0, the system API endpoint leaks license data and installed version to authenticated users. This issue has been patched in versions 4.9.0 and 5.4.0.
En bref
- Sévérité
- Moyenne (CVSS 4.3)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
- Exploitation active
- Non signalée par la CISA
- Publication
- 9 mai 2026
- Dernière mise à jour
- 24 juil. 2026
Produits concernés
- getkirby kirby