All 4 CVE vulnerabilities found in wacrm, with AI-generated Chinese analysis, references, and POCs.
Vendor: ArnasDon
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-77239 | WACRM: Service-role routes missing a role check CWE-285 | 8.1 | High | 2026-09-18 |
| CVE-2026-77240 | WACRM: Database-layer authorization bypasses CWE-639 | 9.9 | Critical | 2026-09-18 |
| CVE-2026-67530 | WACRM: SSRF via the automation `send_webhook` action CWE-918 | 6.4 | Medium | 2026-07-30 |
| CVE-2026-49141 | WACRM Authorization Bypass via Automation Engine Endpoint CWE-639 | 7.1 | High | 2026-06-08 |
All 4 known CVE vulnerabilities affecting wacrm with full Chinese analysis, references, and POCs where available.