Known Vulnerabilities for Music by FreePBX
Listed below are 10 of the newest known vulnerabilities associated with "Music" by "FreePBX".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-73662 json | FreePBX is an open source IP PBX. From 17.0.1 until 17.0.7, the FreePBX Music on Hold module permits dangerous command-line o... | Not Provided | 2026-08-13 | 2026-08-13 |
| CVE-2026-72605 json | A missing authentication vulnerability in Swing Music 3.0.0 allows unauthenticated remote attackers to create arbitrary user ... | Not Provided | 2026-08-11 | 2026-08-11 |
| CVE-2026-69110 json | OpenCode Studio before 2.4.4 contains a missing authentication vulnerability that allows unauthenticated remote attackers to ... | Not Provided | 2026-08-04 | 2026-08-04 |
| CVE-2026-65506 json | Unauthenticated Broken Access Control in MP3 Audio Player for Music, Radio & Podcast by Sonaar <= 5.12 versions. | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-50552 json | Koel is a free, open-source music streaming solution. Prior to version 9.7.1, Koel contains a Server-Side Request Forgery (SS... | Not Provided | 2026-06-12 | 2026-06-15 |
| CVE-2026-50235 json | Lyrion Music Server 9.2.0 contains a reflected cross-site scripting vulnerability in advanced search parameters that fail to ... | Not Provided | 2026-06-05 | 2026-06-05 |
| CVE-2026-50234 json | Lyrion Music Server 9.2.0 contains a path traversal vulnerability that allows unauthenticated attackers to read arbitrary fil... | Not Provided | 2026-06-05 | 2026-06-08 |
| CVE-2026-50233 json | Lyrion Music Server 9.2.0 contains an arbitrary directory listing vulnerability in its readdirectory query, exposed through b... | Not Provided | 2026-06-05 | 2026-06-05 |
| CVE-2026-50232 json | Lyrion Music Server 9.2.0 contains a stored cross-site scripting vulnerability that allows attackers to inject malicious scri... | Not Provided | 2026-06-05 | 2026-06-08 |
| CVE-2026-50231 json | Lyrion Music Server 9.2.0 contains an unauthenticated stored cross-site scripting vulnerability in the log viewer that allows... | Not Provided | 2026-06-05 | 2026-06-05 |