What is CVE-2026-55824?
A vulnerability in Contao CMS's crawler leaks authentication credentials to external hosts. It affects versions 4.13.40 through 5.3.46 and 5.7.0-RC1 through 5.7.6. Users should update to a patched version or review the crawler configuration immediately.
Azərbaycanca: Contao CMS-in crawler funksiyasında autentifikasiya məlumatlarının xarici hostlara sızmasına səbəb olan boşluq aşkarlanıb. Bu, 4.13.40-dən 5.3.46-ya və 5.7.0-RC1-dən 5.7.6-ya qədər olan versiyalara təsir edir. İstifadəçilərə dərhal yamaqlanmış versiyaya yeniləmə və ya crawler konfiqurasiyasını yoxlamaq tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-200
FAQ2
Which versions of Contao CMS are affected by CVE-2026-55824?
The vulnerability affects Contao CMS versions 4.13.40 through 5.3.46 and 5.7.0-RC1 through 5.7.6.
How can I mitigate CVE-2026-55824?
You should immediately update to a patched version or review your crawler configuration.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.