VulnSea

Capgo has 3 CVEs on record. 2 were published in the last 90 days. The median CVSS is 5.3 (medium).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
5.3
Publish → KEV
Last 90 days
2 prev 1

Products

  • Capgo 3
3
Total CVEs
0
Critical
0
CISA KEV
0
Exploited

Capgo vulnerabilities

CVEs affecting Capgo, newest first. Open any entry for full detail, references, and exploit status.

3 CVEsRSS

CVE-2026-56336Medium· 5.3PoC
2mo ago

Capgo before 12.128.2 contains an information disclosure vulnerability in the unauthenticated /private/sso/check-domain endpoint that returns internal org_id and provider_id values

Capgo before 12.128.2 contains an information disclosure vulnerability in the unauthenticated /private/sso/check-domain endpoint that returns internal org_id and provider_id values. Attackers can enumerate email domains to build mappings…

TwilightCapgo · CapgoEPSS 0.26%via NVD
CVE-2026-56281Low· 3.8PoC
2mo ago

Capgo before 12.128.2 contains a sql injection vulnerability in the POST /private/admin_stats endpoint where the limit parameter is destructured from unvalidated request body and interpolated directly into Cloudflare Analytics Engine SQL…

Capgo before 12.128.2 contains a sql injection vulnerability in the POST /private/admin_stats endpoint where the limit parameter is destructured from unvalidated request body and interpolated directly into Cloudflare Analytics Engine SQL…

TwilightCapgo · CapgoEPSS 0.24%via NVD
CVE-2026-56223High· 8.7PoC
3mo ago

Capgo before 12.128.2 contains a cross-domain SSO account takeover vulnerability in the provision-user endpoint that allows attackers to merge arbitrary victim accounts based on email match without validating SSO provider domain authoriz…

Capgo before 12.128.2 contains a cross-domain SSO account takeover vulnerability in the provision-user endpoint that allows attackers to merge arbitrary victim accounts based on email match without validating SSO provider domain authoriz…

MidnightCapgo · CapgoEPSS 0.30%via NVD
Capgo vulnerabilities (CVEs) · VulnSea