wacrm vulnerabilities
CVEs whose affected-version data names the wacrm package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-77239High· 8.1WACRM is a self-hostable CRM template for WhatsApp
WACRM is a self-hostable CRM template for WhatsApp. In version 0.7.0 and earlier, WACRM flow and automation write routes authenticate account viewers but do not enforce the agent role before using a service-role database client that bypa…
▾ TwilightArnasDon · wacrmEPSS 0.28%via NVD
CVE-2026-77240Critical· 9.9WACRM is a self-hostable CRM template for WhatsApp
WACRM is a self-hostable CRM template for WhatsApp. In version 0.7.0 and earlier, the profiles_update row-level security policy in supabase/migrations/017_account_sharing.sql permits authenticated users to modify their own account_role a…
▾ MidnightArnasDon · wacrmEPSS 0.27%via NVD