Known Vulnerabilities for Framework by FreePBX
Listed below are 10 of the newest known vulnerabilities associated with "Framework" by "FreePBX".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-85012 json | Improper neutralization of special elements used in an OS command (CWE-78) in the blueprint resynthesis framework in Amazon W... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-84376 json | Astro is a web framework for content-driven websites. Prior to 7.2.4, Astro stripped a configured non-root base path from req... | Not Provided | 2026-09-02 | 2026-09-02 |
| CVE-2026-84373 json | Vitest is a testing framework powered by Vite. From 2.1.0 until 4.1.11 and 5.0.0-rc.2, the public mockerPlugin and standalone... | Not Provided | 2026-09-01 | 2026-09-02 |
| CVE-2026-84366 json | Scrapy is a high-level web crawling and scraping framework for Python. Prior to 2.17.0, in scrapy/core/downloader/handlers/s3... | Not Provided | 2026-09-01 | 2026-09-02 |
| CVE-2026-84365 json | Hono is a Web application framework that provides support for any JavaScript runtime. From 4.12.12 until 4.13.5, the fix rele... | Not Provided | 2026-09-01 | 2026-09-01 |
| CVE-2026-84364 json | Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.13.5, when parseBody() expan... | Not Provided | 2026-09-01 | 2026-09-02 |
| CVE-2026-84363 json | Hono is a Web application framework that provides support for any JavaScript runtime. Prior to 4.13.5, Hono's query helpers t... | Not Provided | 2026-09-01 | 2026-09-02 |
| CVE-2026-82743 json | Uncontrolled Resource Consumption vulnerability in ash-project ash lets a slow asynchronous read spin a scheduler thread at f... | Not Provided | 2026-09-01 | 2026-09-01 |
| CVE-2026-82634 json | Frappe Framework development builds contain an authorization flaw in the render_jinja_template endpoint that allows low-privi... | Not Provided | 2026-08-30 | 2026-08-31 |
| CVE-2026-82417 json | ### Summary `qs.stringify` throws a `TypeError` when it serializes an object whose own `constructor` property has a truthy... | Not Provided | 2026-08-30 | 2026-08-31 |