CVE security advisories and vulnerability history for weblate by WeblateOrg.
35
Total CVEs
Published
0
In CISA KEV
Exploited in the wild
3
Public exploits
PoC or exploit code
5.2
Avg CVSS
2017–2026
Last updated
Overview
WeblateOrg weblate has 35 published CVE records since 2017, of which 0 are in CISA's Known Exploited Vulnerabilities catalog and 3 have a known public exploit. The average CVSS base score across scored CVEs is 5.2.
This page aggregates every publicly disclosed vulnerability (CVE) affecting WeblateOrg weblate, with a severity breakdown, the affected and patched versions, the most common weakness types, and the full CVE list.
Severity and exploitation
How the CVSS severity of WeblateOrg weblate's CVEs breaks down, plus how many are exploited in the wild or have public exploit code.
Critical2
High6
Medium19
Low8
In CISA’s Known Exploited Vulnerabilities catalog
0
None of WeblateOrg weblate's CVEs are currently listed in CISA's KEV catalog.
Public exploits
3
3 of WeblateOrg weblate's CVEs have a known public exploit available.
Affected versions and CVEs
Browse every WeblateOrg weblate version named in a CVE, then pick one to see only the CVEs that affect it.
Common questions about WeblateOrg weblate vulnerabilities.
How many CVEs does WeblateOrg weblate have?
WeblateOrg weblate has 35 published CVE records since 2017.
How many WeblateOrg weblate CVEs are in CISA KEV?
None of WeblateOrg weblate's CVEs are currently listed in CISA's Known Exploited Vulnerabilities catalog.
Are there public exploits for WeblateOrg weblate vulnerabilities?
Yes — 3 of WeblateOrg weblate's CVEs have a known public exploit.
Which versions of WeblateOrg weblate are affected?
221 distinct WeblateOrg weblate versions are named across its CVEs. Use the version filter above to see the CVEs affecting a specific version.
What are the most common weakness types in WeblateOrg weblate CVEs?
WeblateOrg weblate's CVEs most often map to these CWE weakness types: CWE-918 (Server-Side Request Forgery (SSRF)), CWE-22 (Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')), CWE-284 (Improper Access Control), CWE-862 (Missing Authorization).
How many critical WeblateOrg weblate vulnerabilities are there?
WeblateOrg weblate has 2 critical and 6 high-severity CVEs.
What is the average severity of WeblateOrg weblate CVEs?
The average CVSS base score across WeblateOrg weblate's scored CVEs is 5.2.