V
Vexday
by TrueHacking
›
PT
ES
EN
Overview
CVEs
Technologies
Vendors
Weakness types
Briefing
Live
Home
/
Technologies
/
karakeep-app
Vulnerabilities in
karakeep-app
2 results
CVE-2026-27627
HIGH
Karakeep's Reddit plugin content bypasses DOMPurify sanitization, enabling stored XSS
EPSS
0.3%
CVE-2026-45082
HIGH
Karakeep has a SSRF Protection Bypass via Redirect Handling
EPSS
0.3%