📦 Crafty Controller

by Craftycontrol

🔍 What is Crafty Controller?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2026-0963

CRITICAL CVSS 9.9 Jan 30, 2026

An input neutralization vulnerability in Crafty Controller's File Operations API Endpoint allows authenticated attackers to perform path traversal attacks, leading to file tampering and remote code ex...

CVE-2025-14700

CRITICAL CVSS 9.9 Dec 17, 2025

This critical vulnerability in Crafty Controller's Webhook Template component allows authenticated attackers to execute arbitrary code on the server through template injection. All Crafty Controller i...

CVE-2026-0805

HIGH CVSS 8.2 Jan 30, 2026

An input neutralization vulnerability in Crafty Controller's Backup Configuration component allows authenticated attackers to perform path traversal attacks. This enables file tampering and remote cod...

CVE-2025-14701

HIGH CVSS 7.1 Dec 17, 2025

A stored cross-site scripting (XSS) vulnerability in Crafty Controller's Server MOTD component allows remote unauthenticated attackers to inject malicious scripts. When users view the modified MOTD, t...

CVE-2024-1064

HIGH CVSS 7.5 Feb 3, 2024

CVE-2024-1064 is a host header injection vulnerability in Crafty Controller's HTTP handler that allows unauthenticated remote attackers to cause a Denial of Service (DoS) by sending specially crafted ...