Known CVE
Homarr < 1.54.0 - Information Disclosure
Homarr < 1.54.0 contains an information disclosure caused by the integration.all tRPC endpoint being exposed as a publicProcedure, letting unauthenticated users retrieve sensitive integration metadata, exploit requires no authentication.
CVE-2026-27796
Medium2026CVSS 5.3CWE-200
cve2026 · homarr · exposure · unauth
Verified scans run this check after you prove you own the site.
All known CVEsView the checks catalogNational Vulnerability Database
Scan a website