Package impact

php Packagist / azuracast/azuracast

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Published Description Impact
CVE-2026-42606 high 8.8 8.8 24d ago AzuraCast has Password Reset Poisoning via Untrusted X-Forwarded-Host Header that Leads to Account Takeover and 2FA Bypass php
CVE-2026-42605 high 8.8 8.8 24d ago AzuraCast has Path Traversal in `currentDirectory` Parameter that Enables Remote Code Execution via Media Upload php
CVE-2025-67737 unknown 6mo ago AzuraCast Vulnerable to Pre-Auth File Deletion & Admin RCE php
CVE-2023-2531 unknown 3y ago AzuraCast missing brute force prevention php
CVE-2023-2191 unknown 3y ago AzuraCast/AzuraCast vulnerable to cross-site scripting php