Known Vulnerabilities for Firecrawl by Firecrawl
Listed below are 4 of the newest known vulnerabilities associated with "Firecrawl" by "Firecrawl".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-85606 json | firecrawl-mcp-server 3.20.2 contains an arbitrary local file read vulnerability in the firecrawl_parse tool that accepts unco... | Not Provided | 2026-09-04 | 2026-09-04 |
| CVE-2026-72904 json | Firecrawl turns entire websites into LLM-ready markdown or structured data. Prior to 2.11.32, a critical arbitrary file read ... | Not Provided | 2026-08-10 | 2026-08-11 |
| CVE-2026-63313 json | 9Router before 0.4.72 contains a server-side request forgery (SSRF) vulnerability in the /v1/web/fetch endpoint. The endpoint... | Not Provided | 2026-07-23 | 2026-07-24 |
| CVE-2026-32857 json | Firecrawl version 2.8.0 and prior contain a server-side request forgery (SSRF) protection bypass vulnerability in the Playwri... | Not Provided | 2026-03-26 | 2026-07-14 |