VYPR

kirby-modules

by Medienbaecker

CVEs (1)

  • CVE-2026-63092Jul 21, 2026
    risk 0.00cvss epss 0.00

    kirby-modules through 5.5.7, fixed in commit 315417e, contains an information disclosure vulnerability that allows any authenticated Kirby Panel user to retrieve the full plaintext commercial license key by sending a GET request to the modules/activate dialog endpoint. The…