Known Vulnerabilities for Webmin by Gentoo
Listed below are 6 of the newest known vulnerabilities associated with "Webmin" by "Gentoo".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-56022 json | Webmin accepts basic authentication without session cookies when an attacker provides the 'User-Agent: webmin' header, allowi... | Not Provided | 2026-06-18 | 2026-08-11 |
| CVE-2026-56021 json | Webmin allows unauthenticated attackers to read the contents of any file ending in .conf within module directories, due to a ... | Not Provided | 2026-06-18 | 2026-06-24 |
| CVE-2026-56020 json | The Webmin HTTP server (miniserv.pl) allows unauthenticated attackers to impersonate any user with a configured SSL client ce... | Not Provided | 2026-06-18 | 2026-08-11 |
| CVE-2026-42210 json | Webmin is a web-based system administration tool for Unix-like servers. Prior to version 2.640, for Webmin accounts that requ... | Not Provided | 2026-07-20 | 2026-07-20 |
| CVE-2026-22678 json | Webmin before 2.641 contains a stored cross-site scripting vulnerability in the email template description field of the Syste... | Not Provided | 2026-05-21 | 2026-07-14 |
| CVE-2023-52046 json | 4.8 - MEDIUM | 2024-01-25 | 2024-01-29 | |
| CVE-2023-40986 json | A stored cross-site scripting (XSS) vulnerability in the Usermin Configuration function of Webmin v2.100 allows attackers to ... | 4.8 - MEDIUM | 2023-09-15 | 2026-07-09 |
| CVE-2023-40985 json | An issue was discovered in Webmin 2.100. The File Manager functionality allows an attacker to exploit a Cross-Site Scripting ... | 4.8 - MEDIUM | 2023-09-15 | 2026-07-09 |
| CVE-2023-40984 json | A reflected cross-site scripting (XSS) vulnerability in the File Manager function of Webmin v2.100 allows attackers to execut... | 4.8 - MEDIUM | 2023-09-15 | 2026-07-09 |
| CVE-2023-40983 json | A reflected cross-site scripting (XSS) vulnerability in the File Manager function of Webmin v2.100 allows attackers to execut... | 4.8 - MEDIUM | 2023-09-15 | 2026-07-09 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Gentoo | Webmin | 1.590 | |||
| Application | Gentoo | Webmin | 1.580 | |||
| Application | Gentoo | Webmin | 1.570 | |||
| Application | Gentoo | Webmin | 1.560 | |||
| Application | Gentoo | Webmin | 1.550 | |||
| Application | Gentoo | Webmin | 1.530 | |||
| Application | Gentoo | Webmin | 1.520 | |||
| Application | Gentoo | Webmin | 1.510 | |||
| Application | Gentoo | Webmin | 1.500 | |||
| Application | Gentoo | Webmin | 1.480 | |||
| Application | Gentoo | Webmin | 1.470 | |||
| Application | Gentoo | Webmin | 1.450 | |||
| Application | Gentoo | Webmin | 1.440 | |||
| Application | Gentoo | Webmin | 1.430 | |||
| Application | Gentoo | Webmin | 1.420 | |||
| Application | Gentoo | Webmin | 1.410 | |||
| Application | Gentoo | Webmin | 1.400 | |||
| Application | Gentoo | Webmin | 1.390 | |||
| Application | Gentoo | Webmin | 1.380 | |||
| Application | Gentoo | Webmin | 1.370 |