https://advisories.gitlab.com/composer/krayin/laravel-crm/CVE-2026-38527/
Webkul Krayin CRM has Server-Side Request Forgery (SSRF) | GitLab Advisory Database (GLAD)
CVE-2026-38527 Webkul Krayin CRM has Server-Side Request Forgery (SSRF): A Server-Side Request Forgery (SSRF) in the /settings/webhooks/create component of...
krayin crmwebkulserversiderequest
https://cvefeed.io/vuln/detail/CVE-2026-36340
CVE-2026-36340 - Krayin CRM Remote Code Execution
Apr 30, 2026 - An issue in Krayin CRM v.2.1.5 and fixed in v.2.1.6 allows a remote attacker to execute arbitrary code via the compose email function
remote code executionkrayin crmcve
https://www.sentinelone.com/vulnerability-database/cve-2026-38529/
CVE-2026-38529: Webkul Krayin CRM Auth Bypass Vulnerability
CVE-2026-38529 is an auth bypass vulnerability in Webkul Krayin CRM. Learn about its impact, affected versions, and mitigation methods.
krayin crmcvewebkulauthbypass