Known Vulnerabilities for Astro by Withastro
Listed below are 10 of the newest known vulnerabilities associated with "Astro" by "Withastro".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-59731 json | Astro is a web framework for content-driven websites. Version 6.4.7 performs authorization decisions on a partially decoded p... | Not Provided | 2026-07-08 | 2026-07-09 |
| CVE-2026-59730 json | Astro is a web framework for content-driven websites. In versions 8.1.0 through 11.0.1, when trailingSlash: 'always' is confi... | Not Provided | 2026-07-27 | 2026-07-28 |
| CVE-2026-59729 json | Astro is a web framework for content-driven websites. Versions prior to 7.0.6 are vulnerable to XSS through unescaped spread ... | Not Provided | 2026-07-27 | 2026-07-28 |
| CVE-2026-59728 json | Astro is a web framework for content-driven websites. In versions 1.0.0 through 4.0.18, the source.title and enclosure.type i... | Not Provided | 2026-07-27 | 2026-07-28 |
| CVE-2026-59727 json | Astro is a web framework for content-driven websites. In versions 3.10.0 through 7.0.3, when a transition:persist, transition... | Not Provided | 2026-07-27 | 2026-07-28 |
| CVE-2026-54300 json | @astrojs/netlify is an adapter that allows Astro to deploy your hybrid or server rendered site to Netlify. Prior to 7.0.13, @... | Not Provided | 2026-06-22 | 2026-06-23 |
| CVE-2026-54299 json | Astro is a web framework. Prior to 6.4.6, Astro SSR apps with prerendered error pages (/404 or /500 using export const preren... | Not Provided | 2026-06-22 | 2026-06-23 |
| CVE-2026-54298 json | Astro is a web framework. Prior to 6.4.6, the spreadAttributes function in Astro's server-side rendering pipeline iterates ov... | Not Provided | 2026-06-22 | 2026-06-23 |
| CVE-2026-50146 json | Astro is a web framework. Prior to 6.3.3, when a component uses a client:* directive, Astro inserts named slot content into a... | Not Provided | 2026-06-22 | 2026-06-23 |
| CVE-2026-45028 json | Astro is a web framework. Astro versions prior to 6.1.10 used AES-GCM encryption to protect the confidentiality and integrity... | Not Provided | 2026-05-13 | 2026-05-13 |