statamic/cms Security Advisories for v6.13.0 (2)
-
[MEDIUM] Statamic CMS: Server-Side Request Forgery via Glide
PKSA-7fht-jznj-7mgv CVE-2026-45660 GHSA-pf9c-ch8r-2958
Affected version: >=6.0.0-alpha.1,<6.18.1|<5.73.22
Reported by:
GitHub -
[MEDIUM] Statamic CMS vulnerable to email enumeration via forgot password endpoint
PKSA-ynr1-y6st-8cwm CVE-2026-44306 GHSA-m24v-f7g5-gq67
Affected version: >=6.0.0,<6.15.0|<5.73.21
Reported by:
GitHub