authelia has 3 CVEs on record between 2021 and 2026. 1 was published in the last 90 days. The median CVSS is 7.7 (high), with 1 rated critical.
CVEs per month
Last 12 months, by publish date
1025/101125/111225/120126/010226/020326/030426/040526/050626/060726/070826/080926/09
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 7.7
- Publish → KEV
- —
- Last 90 days
- 1 prev 0
3
Total CVEs
1
Critical
0
CISA KEV
0
Exploited
authelia vulnerabilities
CVEs affecting authelia, newest first. Open any entry for full detail, references, and exploit status.
3 CVEsRSS
CVE-2026-48794LowAuthelia has an Edge Case Access Control Rule Mismatch
Authelia has an Edge Case Access Control Rule Mismatch
▾ Sunlitauthelia · github.com/authelia/authelia/v4EPSS 0.41%via GHSA
CVE-2021-29456Medium· 5.4Authelia allows open redirects on the logout endpoint
Authelia allows open redirects on the logout endpoint
▾ Sunlitauthelia · github.com/authelia/authelia/v4EPSS 0.51%via OSV
CVE-2021-32637Critical· 10.0Authelia vulnerable to an authentication bypassed with malformed request URI on nginx
Authelia vulnerable to an authentication bypassed with malformed request URI on nginx
▾ Midnightauthelia · github.com/authelia/authelia/v4EPSS 1.9%via OSV