Known Vulnerabilities for Backstage by Linuxfoundation
Listed below are 5 of the newest known vulnerabilities associated with "Backstage" by "Linuxfoundation".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-32237 json | Backstage is an open framework for building developer portals. Prior to 3.1.5, authenticated users with permission to execute... | Not Provided | 2026-03-12 | 2026-03-12 |
| CVE-2026-32236 json | Backstage is an open framework for building developer portals. Prior to 0.27.1, a Server-Side Request Forgery (SSRF) vulnerab... | Not Provided | 2026-03-12 | 2026-04-15 |
| CVE-2026-29185 json | Backstage is an open framework for building developer portals. Prior to version 1.20.1, a vulnerability in the SCM URL parsin... | Not Provided | 2026-03-07 | 2026-03-09 |
| CVE-2026-29184 json | Backstage is an open framework for building developer portals. Prior to version 3.1.4, a malicious scaffolder template can by... | Not Provided | 2026-03-07 | 2026-03-09 |
| CVE-2026-3118 json | A security flaw was identified in the Orchestrator Plugin of Red Hat Developer Hub (Backstage). The issue occurs due to insuf... | Not Provided | 2026-02-25 | 2026-05-05 |
| CVE-2023-35926 json | Backstage is an open platform for building developer portals. The Backstage scaffolder-backend plugin uses a templating libra... | 9.9 - CRITICAL | 2023-06-22 | 2023-06-29 |
| CVE-2023-6944 json | Backstage is an open platform for building developer portals. The Backstage scaffolder-backend plugin uses a templating libra... | 5.7 - MEDIUM | 2024-01-04 | 2024-02-04 |
| CVE-2021-41151 json | Backstage is an open platform for building developer portals. In affected versions A malicious actor could read sensitive fil... | 4.9 - MEDIUM | 2021-10-18 | 2021-10-22 |
| CVE-2021-32662 json | Backstage is an open platform for building developer portals, and techdocs-common contains common functionalities for Backsta... | 6.5 - MEDIUM | 2021-06-03 | 2021-06-21 |