Skip to content

Known CVE

Homarr < 1.54.0 - Information Disclosure

Homarr < 1.54.0 contains an information disclosure caused by the integration.all tRPC endpoint being exposed as a publicProcedure, letting unauthenticated users retrieve sensitive integration metadata, exploit requires no authentication.

CVE-2026-27796

Medium2026CVSS 5.3CWE-200

cve2026 · homarr · exposure · unauth

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website