Known Vulnerabilities for Backstage by Linuxfoundation
Listed below are 6 of the newest known vulnerabilities associated with "Backstage" by "Linuxfoundation".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-44374 json | Backstage is an open framework for building developer portals. Prior to 0.6.11, the unprocessed entities read endpoints in @b... | Not Provided | 2026-05-14 | 2026-05-14 |
| CVE-2026-32236 json | Backstage is an open framework for building developer portals. Prior to 0.27.1, a Server-Side Request Forgery (SSRF) vulnerab... | Not Provided | 2026-03-12 | 2026-04-15 |
| CVE-2026-29186 json | Backstage is an open framework for building developer portals. Prior to version 1.14.3, this is a configuration bypass vulner... | Not Provided | 2026-03-07 | 2026-06-30 |
| CVE-2026-25153 json | Backstage is an open framework for building developer portals, and @backstage/plugin-techdocs-node provides common node.js fu... | Not Provided | 2026-01-30 | 2026-06-30 |
| CVE-2026-24046 json | Backstage is an open framework for building developer portals. Multiple Scaffolder actions and archive extraction utilities w... | Not Provided | 2026-01-21 | 2026-06-30 |
| CVE-2026-3118 json | A security flaw was identified in the Orchestrator Plugin of Red Hat Developer Hub (Backstage). The issue occurs due to insuf... | Not Provided | 2026-02-25 | 2026-05-05 |
| CVE-2023-35926 json | Backstage is an open platform for building developer portals. The Backstage scaffolder-backend plugin uses a templating libra... | 9.9 - CRITICAL | 2023-06-22 | 2023-06-29 |
| CVE-2023-6944 json | Backstage is an open platform for building developer portals. The Backstage scaffolder-backend plugin uses a templating libra... | 5.7 - MEDIUM | 2024-01-04 | 2024-02-04 |
| CVE-2021-41151 json | Backstage is an open platform for building developer portals. In affected versions A malicious actor could read sensitive fil... | 4.9 - MEDIUM | 2021-10-18 | 2021-10-22 |
| CVE-2021-32662 json | Backstage is an open platform for building developer portals, and techdocs-common contains common functionalities for Backsta... | 6.5 - MEDIUM | 2021-06-03 | 2021-06-21 |