Leantime

    Dashboard / Vendors

    Products: 2
    Vulnerabilities: 19
    Known Exploited: 0
    0
    Critical Level Threats
    10
    High Level Threats
    9
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-76647

    Leantime JSON-RPC API contains a missing authorization vulnerability

    Last Modified: Aug 27, 2026
    Published: Aug 19, 2026

    CVE-2026-54418

    Leantime - Missing Authorization on TwoFA JSON-RPC Methods Allows Cross-Account 2FA Secret Disclosure and Bypass

    Last Modified: Aug 10, 2026
    Published: Aug 05, 2026

    CVE-2026-66416

    Leantime CSRF Protection Globally Disabled by Omission of Laravel VerifyCsrfToken Middleware

    Last Modified: Aug 14, 2026
    Published: Jul 30, 2026

    CVE-2026-66415

    Leantime Server-Side Request Forgery and Local File Inclusion in Blueprints::import()

    Last Modified: Aug 14, 2026
    Published: Jul 30, 2026

    CVE-2026-66414

    Leantime Open Redirect in Login Controller via redirectUrl Parameter

    Last Modified: Aug 14, 2026
    Published: Jul 30, 2026
    Items Per Page
    Leantime Vulnerabilities & Security CVEs | CVE-DB