{"schema_version":1,"title":"OneUptime vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 22 vulnerabilities in OneUptime: 0 in the last 7 days and 1 in the last 90 days, 3 of them critical and 0 exploited in the wild. The most recent, CVE-2026-80350, was published on 26 August 2026.","url":"https://junglewise.ai/threats/technologies/oneuptime","json_url":"https://junglewise.ai/threats/technologies/oneuptime.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/oneuptime","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":3,"all_time":22,"critical":3,"exploited":0,"last_7_days":0,"last_30_days":0,"last_90_days":1,"last_365_days":21},"latest":[{"cve":"CVE-2026-80350","cvss":7.1,"epss":0.004,"slug":"cve-2026-80350-oneuptime-webhook-ssrf-via-ipv4-mapped-ipv6-addresses","title":"OneUptime webhook SSRF via IPv4-mapped IPv6 addresses","severity":"high","exploited":false,"published_at":"2026-08-26T10:16:43.237+00:00","url":"https://junglewise.ai/threats/cve-2026-80350-oneuptime-webhook-ssrf-via-ipv4-mapped-ipv6-addresses"},{"cve":"CVE-2026-45102","cvss":9.9,"slug":"cve-2026-45102-oneuptime-sandbox-escape-in-vmrunner-leading-to-rce","title":"OneUptime sandbox escape in VMRunner leading to RCE","severity":"critical","exploited":false,"published_at":"2026-05-27T20:16:38.25+00:00","url":"https://junglewise.ai/threats/cve-2026-45102-oneuptime-sandbox-escape-in-vmrunner-leading-to-rce"},{"cve":"CVE-2026-35053","cvss":9.8,"epss":0.0055,"slug":"cve-2026-35053-oneuptime-missing-authentication-in-worker-manualapi-workflow","title":"OneUptime missing authentication in Worker ManualAPI workflow execution","severity":"critical","exploited":false,"published_at":"2026-04-02T20:16:29.117+00:00","url":"https://junglewise.ai/threats/cve-2026-35053-oneuptime-missing-authentication-in-worker-manualapi-workflow"},{"cve":"CVE-2026-34840","cvss":8.1,"epss":0.0026,"slug":"cve-2026-34840-oneuptime-saml-sso-authentication-bypass-via-identity-injection","title":"OneUptime SAML SSO authentication bypass via identity injection","severity":"high","exploited":false,"published_at":"2026-04-02T20:16:28.357+00:00","url":"https://junglewise.ai/threats/cve-2026-34840-oneuptime-saml-sso-authentication-bypass-via-identity-injection"},{"cve":"CVE-2026-34759","cvss":8.1,"epss":0.006,"slug":"cve-2026-34759-oneuptime-missing-authorization-in-notification-api-endpoints","title":"OneUptime missing authorization in notification API endpoints","severity":"high","exploited":false,"published_at":"2026-04-02T19:21:33.833+00:00","url":"https://junglewise.ai/threats/cve-2026-34759-oneuptime-missing-authorization-in-notification-api-endpoints"},{"cve":"CVE-2026-34758","cvss":9.1,"epss":0.0035,"slug":"cve-2026-34758-oneuptime-missing-authentication-in-notification-and-phone-number","title":"OneUptime missing authentication in Notification and Phone Number endpoints","severity":"critical","exploited":false,"published_at":"2026-04-02T19:21:33.67+00:00","url":"https://junglewise.ai/threats/cve-2026-34758-oneuptime-missing-authentication-in-notification-and-phone-number"},{"cve":"CVE-2026-33143","cvss":4,"epss":0.002,"slug":"cve-2026-33143-oneuptime-whatsapp-webhook-signature-verification-bypass","title":"OneUptime WhatsApp Webhook signature verification bypass","severity":"medium","exploited":false,"published_at":"2026-03-18T17:25:02+00:00","url":"https://junglewise.ai/threats/cve-2026-33143-oneuptime-whatsapp-webhook-signature-verification-bypass"},{"cve":"CVE-2026-33142","cvss":3.1,"epss":0.0039,"slug":"cve-2026-33142-oneuptime-clickhouse-sql-injection-in-query-parameters","title":"OneUptime ClickHouse SQL injection in query parameters","severity":"low","exploited":false,"published_at":"2026-03-18T16:34:18+00:00","url":"https://junglewise.ai/threats/cve-2026-33142-oneuptime-clickhouse-sql-injection-in-query-parameters"},{"cve":"CVE-2026-32598","cvss":4,"epss":0.0032,"slug":"cve-2026-32598-oneuptime-password-reset-token-logged-at-info-level","title":"OneUptime password reset token logged at INFO level","severity":"medium","exploited":false,"published_at":"2026-03-13T20:05:12+00:00","url":"https://junglewise.ai/threats/cve-2026-32598-oneuptime-password-reset-token-logged-at-info-level"},{"cve":"CVE-2026-32308","cvss":3.1,"epss":0.003,"slug":"cve-2026-32308-oneuptime-stored-xss-in-mermaid-diagram-rendering","title":"OneUptime stored XSS in Mermaid diagram rendering","severity":"low","exploited":false,"published_at":"2026-03-13T20:00:38+00:00","url":"https://junglewise.ai/threats/cve-2026-32308-oneuptime-stored-xss-in-mermaid-diagram-rendering"},{"cve":"CVE-2026-32306","cvss":3.1,"epss":0.0091,"slug":"cve-2026-32306-oneuptime-clickhouse-sql-injection-in-analytics-api","title":"OneUptime ClickHouse SQL injection in analytics API","severity":"low","exploited":false,"published_at":"2026-03-13T20:00:34+00:00","url":"https://junglewise.ai/threats/cve-2026-32306-oneuptime-clickhouse-sql-injection-in-analytics-api"},{"cve":"CVE-2026-30959","cvss":4,"epss":0.0035,"slug":"cve-2026-30959-oneuptime-whatsapp-resend-verification-authorization-bypass","title":"OneUptime WhatsApp resend verification authorization bypass","severity":"medium","exploited":false,"published_at":"2026-03-10T01:15:30+00:00","url":"https://junglewise.ai/threats/cve-2026-30959-oneuptime-whatsapp-resend-verification-authorization-bypass"},{"cve":"CVE-2026-30957","cvss":3.1,"epss":0.0106,"slug":"cve-2026-30957-oneuptime-synthetic-monitor-remote-code-execution-via-exposed","title":"OneUptime Synthetic Monitor remote code execution via exposed Playwright browser","severity":"low","exploited":false,"published_at":"2026-03-10T01:12:59+00:00","url":"https://junglewise.ai/threats/cve-2026-30957-oneuptime-synthetic-monitor-remote-code-execution-via-exposed"},{"cve":"CVE-2026-30956","cvss":3.1,"epss":0.0047,"slug":"cve-2026-30956-oneuptime-authorization-bypass-via-is-multi-tenant-query-header","title":"OneUptime authorization bypass via is-multi-tenant-query header","severity":"low","exploited":false,"published_at":"2026-03-10T01:09:40+00:00","url":"https://junglewise.ai/threats/cve-2026-30956-oneuptime-authorization-bypass-via-is-multi-tenant-query-header"},{"cve":"CVE-2026-30920","cvss":3.1,"epss":0.0022,"slug":"cve-2026-30920-oneuptime-broken-access-control-in-github-app-installation-flow","title":"OneUptime broken access control in GitHub App installation flow","severity":"low","exploited":false,"published_at":"2026-03-09T17:29:47+00:00","url":"https://junglewise.ai/threats/cve-2026-30920-oneuptime-broken-access-control-in-github-app-installation-flow"},{"cve":"CVE-2026-30921","cvss":3.1,"epss":0.0052,"slug":"cve-2026-30921-oneuptime-synthetic-monitor-remote-code-execution-via-exposed","title":"OneUptime Synthetic Monitor remote code execution via exposed Playwright","severity":"low","exploited":false,"published_at":"2026-03-07T02:39:04+00:00","url":"https://junglewise.ai/threats/cve-2026-30921-oneuptime-synthetic-monitor-remote-code-execution-via-exposed"},{"cve":"CVE-2026-30887","cvss":3.1,"epss":0.0056,"slug":"cve-2026-30887-oneuptime-unsandboxed-code-execution-in-probe-allowing-rce","title":"OneUpTime unsandboxed code execution in Probe allowing RCE","severity":"low","exploited":false,"published_at":"2026-03-07T02:30:09+00:00","url":"https://junglewise.ai/threats/cve-2026-30887-oneuptime-unsandboxed-code-execution-in-probe-allowing-rce"},{"cve":"CVE-2026-28787","cvss":3.1,"epss":0.0038,"slug":"cve-2026-28787-oneuptime-webauthn-2fa-bypass-via-client-supplied-challenge","title":"OneUptime WebAuthn 2FA bypass via client-supplied challenge","severity":"low","exploited":false,"published_at":"2026-03-02T21:40:54+00:00","url":"https://junglewise.ai/threats/cve-2026-28787-oneuptime-webauthn-2fa-bypass-via-client-supplied-challenge"},{"cve":"CVE-2026-27728","cvss":3.1,"epss":0.0255,"slug":"cve-2026-27728-oneuptime-probe-os-command-injection-in-networkpathmonitor","title":"OneUptime Probe OS command injection in NetworkPathMonitor","severity":"low","exploited":false,"published_at":"2026-02-25T18:09:47+00:00","url":"https://junglewise.ai/threats/cve-2026-27728-oneuptime-probe-os-command-injection-in-networkpathmonitor"},{"cve":"CVE-2026-27574","cvss":3.1,"epss":0.0062,"slug":"cve-2026-27574-oneuptime-code-injection-in-vm-sandbox-allows-rce","title":"OneUptime code injection in VM sandbox allows RCE","severity":"low","exploited":false,"published_at":"2026-02-24T16:00:56+00:00","url":"https://junglewise.ai/threats/cve-2026-27574-oneuptime-code-injection-in-vm-sandbox-allows-rce"},{"cve":"CVE-2025-66028","cvss":4,"epss":0.003,"slug":"cve-2025-66028-oneuptime-privilege-escalation-via-login-response-manipulation","title":"OneUptime privilege escalation via login response manipulation","severity":"medium","exploited":false,"published_at":"2025-11-25T22:55:50+00:00","url":"https://junglewise.ai/threats/cve-2025-66028-oneuptime-privilege-escalation-via-login-response-manipulation"},{"cve":"CVE-2024-29194","cvss":3.1,"slug":"cve-2024-29194-oneuptime-privilege-escalation-via-local-storage-manipulation","title":"OneUptime privilege escalation via local storage manipulation","severity":"low","exploited":false,"published_at":"2024-03-25T19:37:27+00:00","url":"https://junglewise.ai/threats/cve-2024-29194-oneuptime-privilege-escalation-via-local-storage-manipulation"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":1},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[],"technology":{"hub":true,"name":"OneUptime","slug":"oneuptime","vendor":{"name":"OneUptime","slug":"oneuptime","url":"https://junglewise.ai/threats/vendors/oneuptime"},"aliases":[],"category":"monitoring","description":"Open-source uptime monitoring and incident management platform.","url":"https://junglewise.ai/threats/technologies/oneuptime"},"most_severe":[{"cve":"CVE-2026-45102","cvss":9.9,"slug":"cve-2026-45102-oneuptime-sandbox-escape-in-vmrunner-leading-to-rce","title":"OneUptime sandbox escape in VMRunner leading to RCE","severity":"critical","exploited":false,"published_at":"2026-05-27T20:16:38.25+00:00","url":"https://junglewise.ai/threats/cve-2026-45102-oneuptime-sandbox-escape-in-vmrunner-leading-to-rce"},{"cve":"CVE-2026-35053","cvss":9.8,"epss":0.0055,"slug":"cve-2026-35053-oneuptime-missing-authentication-in-worker-manualapi-workflow","title":"OneUptime missing authentication in Worker ManualAPI workflow execution","severity":"critical","exploited":false,"published_at":"2026-04-02T20:16:29.117+00:00","url":"https://junglewise.ai/threats/cve-2026-35053-oneuptime-missing-authentication-in-worker-manualapi-workflow"},{"cve":"CVE-2026-34758","cvss":9.1,"epss":0.0035,"slug":"cve-2026-34758-oneuptime-missing-authentication-in-notification-and-phone-number","title":"OneUptime missing authentication in Notification and Phone Number endpoints","severity":"critical","exploited":false,"published_at":"2026-04-02T19:21:33.67+00:00","url":"https://junglewise.ai/threats/cve-2026-34758-oneuptime-missing-authentication-in-notification-and-phone-number"},{"cve":"CVE-2026-34759","cvss":8.1,"epss":0.006,"slug":"cve-2026-34759-oneuptime-missing-authorization-in-notification-api-endpoints","title":"OneUptime missing authorization in notification API endpoints","severity":"high","exploited":false,"published_at":"2026-04-02T19:21:33.833+00:00","url":"https://junglewise.ai/threats/cve-2026-34759-oneuptime-missing-authorization-in-notification-api-endpoints"},{"cve":"CVE-2026-34840","cvss":8.1,"epss":0.0026,"slug":"cve-2026-34840-oneuptime-saml-sso-authentication-bypass-via-identity-injection","title":"OneUptime SAML SSO authentication bypass via identity injection","severity":"high","exploited":false,"published_at":"2026-04-02T20:16:28.357+00:00","url":"https://junglewise.ai/threats/cve-2026-34840-oneuptime-saml-sso-authentication-bypass-via-identity-injection"},{"cve":"CVE-2026-80350","cvss":7.1,"epss":0.004,"slug":"cve-2026-80350-oneuptime-webhook-ssrf-via-ipv4-mapped-ipv6-addresses","title":"OneUptime webhook SSRF via IPv4-mapped IPv6 addresses","severity":"high","exploited":false,"published_at":"2026-08-26T10:16:43.237+00:00","url":"https://junglewise.ai/threats/cve-2026-80350-oneuptime-webhook-ssrf-via-ipv4-mapped-ipv6-addresses"},{"cve":"CVE-2026-30959","cvss":4,"epss":0.0035,"slug":"cve-2026-30959-oneuptime-whatsapp-resend-verification-authorization-bypass","title":"OneUptime WhatsApp resend verification authorization bypass","severity":"medium","exploited":false,"published_at":"2026-03-10T01:15:30+00:00","url":"https://junglewise.ai/threats/cve-2026-30959-oneuptime-whatsapp-resend-verification-authorization-bypass"},{"cve":"CVE-2026-32598","cvss":4,"epss":0.0032,"slug":"cve-2026-32598-oneuptime-password-reset-token-logged-at-info-level","title":"OneUptime password reset token logged at INFO level","severity":"medium","exploited":false,"published_at":"2026-03-13T20:05:12+00:00","url":"https://junglewise.ai/threats/cve-2026-32598-oneuptime-password-reset-token-logged-at-info-level"},{"cve":"CVE-2025-66028","cvss":4,"epss":0.003,"slug":"cve-2025-66028-oneuptime-privilege-escalation-via-login-response-manipulation","title":"OneUptime privilege escalation via login response manipulation","severity":"medium","exploited":false,"published_at":"2025-11-25T22:55:50+00:00","url":"https://junglewise.ai/threats/cve-2025-66028-oneuptime-privilege-escalation-via-login-response-manipulation"},{"cve":"CVE-2026-33143","cvss":4,"epss":0.002,"slug":"cve-2026-33143-oneuptime-whatsapp-webhook-signature-verification-bypass","title":"OneUptime WhatsApp Webhook signature verification bypass","severity":"medium","exploited":false,"published_at":"2026-03-18T17:25:02+00:00","url":"https://junglewise.ai/threats/cve-2026-33143-oneuptime-whatsapp-webhook-signature-verification-bypass"}],"generated_at":"2026-09-26T09:11:00.170868+00:00"}