Package impact
Packagist / krayin/laravel-crm
| CVE | Severity | CVSS | Risk | Published | Description | Impact |
|---|---|---|---|---|---|---|
| CVE-2026-36340 | high | 8.1 | 8.1 | 28d ago | Krayin CRM allows a remote attacker to execute arbitrary code via compose email function | |
| CVE-2026-36341 | medium | 5.4 | 5.4 | 21d ago | Webkul Krayin CRM is Vulnerable to Cross-Site Scripting in the /admin/activities/create endpoint | |
| CVE-2026-5370 | low | 3.5 | 3.5 | 2mo ago | Krayin CRM is vulnerable to Cross-site Scripting (XSS) |