Changedetection Vulnerabilities
Security vulnerability tracking for Webtechnologies Changedetection
4
0
1
0
Vulnerability Timeline
4 vulnerabilities discovered over time for Changedetection
Severity Distribution
| Description | Vendor / Product | Exploit Status | |||
|---|---|---|---|---|---|
| CVE-2026-29065 | 8.8 | This vulnerability allows an attacker to overwrite files on the server by uploading a specially crafted ZIP file, which can lead to unauthorized changes or access to sensitive data. It affects versions prior to 0.54.4 of the changedetection tool, so users should upgrade to the latest version to protect against this risk. | webtechnologieschangedetection | Theoretical | about 1 month agoMar 6, 2026 |
| CVE-2026-29039 | 8.8 | This vulnerability allows an attacker to read any file on the server where the changedetection.io application is running by using specially crafted XPath expressions. It can be exploited by anyone who can access the application and does not require any special permissions, making it a significant risk if not updated to the latest version. | webtechnologieschangedetection | Theoretical | about 1 month agoMar 6, 2026 |
| CVE-2026-29038 | 6.1 | An attacker can exploit a vulnerability in changedetection.io to inject malicious JavaScript into the web page, which could then be executed in the browser of anyone visiting that page. This happens when a user accesses a specific URL with a manipulated tag identifier, allowing the attacker to run harmful scripts without needing any special access. | webtechnologieschangedetection | Theoretical | about 1 month agoMar 6, 2026 |
| CVE-2023-24769 | 5.4 | This vulnerability allows attackers to run harmful scripts on a user's browser by tricking them into clicking a specially crafted link when adding a new change detection watch. It requires the attacker to manipulate the URL, making it possible for them to target users of the affected software version before an update is applied. | webtechnologieschangedetection | Exploit Available | about 3 years agoFeb 17, 2023 |
About Webtechnologies Changedetection Security
This page provides comprehensive security vulnerability tracking for Webtechnologies Changedetection. Our database includes all CVEs affecting this product, updated in real-time from official sources.
Each vulnerability listing includes detailed CVSS severity analysis, exploit availability status, AI-generated explanations, and direct links to official security patches and vendor advisories.
Security Recommendations
- • Always keep Changedetection updated to the latest version
- • Subscribe to security advisories from Webtechnologies
- • Monitor this page for new vulnerabilities affecting your version
- • Prioritize patching critical and high severity issues immediately