VulnSea

motioneye has 8 CVEs on record between 2022 and 2026. The busiest recent month was June 2026 with 5. The median CVSS is 7.2 (high), with 2 rated critical. None have a confirmed exploitation report. The most common weakness class is CWE-22 (3).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
7.2
Publish → KEV
Last 90 days
0 prev 5

Products

  • motioneye 8
8
Total CVEs
2
Critical
0
CISA KEV
0
Exploited

motioneye vulnerabilities

CVEs affecting motioneye, newest first. Open any entry for full detail, references, and exploit status.

8 CVEsRSS

CVE-2026-55488High
3mo ago

motionEye's Absolute Path Traversal in Media File Handlers Allows Arbitrary File Read

motionEye's Absolute Path Traversal in Media File Handlers Allows Arbitrary File Read

Twilightmotioneye · motioneyeEPSS 0.62%via GHSA
GHSA-qxvg-h7q2-hcxhCritical· 9.8
3mo ago

motionEye: LFI → pass‑the‑hash admin → unsafe restore → unauth action exec (RCE)

motionEye: LFI → pass‑the‑hash admin → unsafe restore → unauth action exec (RCE)

Midnightmotioneye · motioneyevia GHSA
GHSA-phv5-334h-mxcwCritical
3mo ago

motionEye Partial Authentication Bypass: Unauthenticated Admin Credential Theft via Path Traversal

motionEye Partial Authentication Bypass: Unauthenticated Admin Credential Theft via Path Traversal

Midnightmotioneye · motioneyevia GHSA
CVE-2026-31978Medium· 6.5
3mo ago

motionEye has an Arbitrary File Read via Path Traversal in Picture/Movie Preview Endpoint

motionEye has an Arbitrary File Read via Path Traversal in Picture/Movie Preview Endpoint

Sunlitmotioneye · motioneyeEPSS 0.42%via GHSA
CVE-2026-32315Medium· 5.5
3mo ago

motionEye's World-Readable Configuration File Exposes Admin Password Hash

motionEye's World-Readable Configuration File Exposes Admin Password Hash

Sunlitmotioneye · motioneyeEPSS 2.9%via GHSA
CVE-2025-60787High· 7.2PoC
10mo ago

motionEye vulnerable to RCE via unsanitized motion config parameter

motionEye vulnerable to RCE via unsanitized motion config parameter

Midnightmotioneye · motioneyeEPSS 18%via OSV
CVE-2025-47782High
1y ago

motionEye vulnerable to RCE in add_camera Function Due to unsafe command execution

motionEye vulnerable to RCE in add_camera Function Due to unsafe command execution

Twilightmotioneye · motioneyeEPSS 0.49%via OSV
CVE-2021-44255High· 7.2PoC
4y ago

Unrestricted Upload of File with Dangerous Type in motionEye

Unrestricted Upload of File with Dangerous Type in motionEye

Midnightmotioneye · motioneyeEPSS 3.1%via OSV
motioneye vulnerabilities (CVEs) · VulnSea