📦 Miniflux

by Miniflux Project

🔍 What is Miniflux?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-27591

HIGH CVSS 7.5 Mar 17, 2023

This vulnerability allows unauthenticated attackers to access Prometheus metrics from publicly exposed Miniflux instances with metrics collection enabled. It affects Miniflux instances where METRICS_C...

CVE-2026-21885

MEDIUM CVSS 6.5 Jan 8, 2026

Miniflux 2's media proxy endpoint can be abused by authenticated users to perform Server-Side Request Forgery (SSRF), allowing attackers to make the server fetch internal network resources. This affec...

CVE-2025-67713

MEDIUM CVSS 6.1 Dec 11, 2025

Miniflux 2 versions 2.2.14 and below contain an open redirect vulnerability that allows attackers to redirect users to malicious websites after login. The vulnerability occurs because protocol-relativ...