reNgine vulnerabilities
CVEs whose affected-version data names the reNgine package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-105487Medium· 6.3A vulnerability was found in yogeshojha reNgine up to 2.2.0
A vulnerability was found in yogeshojha reNgine up to 2.2.0. Affected by this vulnerability is the function subdomain_discovery of the file web/reNgine/tasks.py of the component listTargets Endpoint. The manipulation of the argument Name…
▾ Sunlityogeshojha · reNginevia NVD
CVE-2026-92570Medium· 6.5PoCreNgine through 2.2.0 contains an authorization bypass vulnerability in the GetFileContents API endpoint that allows any authenticated user to read bundled recon tool configuration files
reNgine through 2.2.0 contains an authorization bypass vulnerability in the GetFileContents API endpoint that allows any authenticated user to read bundled recon tool configuration files. Attackers with low-privilege Auditor roles can ac…
▾ Twilightyogeshojha · rengineEPSS 0.44%via NVD