VYPR

Contao crawler

by Contao

CVEs (1)

  • CVE-2026-55824Jul 31, 2026
    risk 0.00cvss epss 0.00

    Contao is an Open Source CMS. In versions 4.13.40 through 5.3.46 and 5.7.0-RC1 through 5.7.6, the crawler leaks auth credentials to external hosts. Contao's crawler tries to prevent confidential HTTP client options from being sent to external domains by creating a scoped client:…