phoenix_storybook has 3 CVEs on record. The busiest recent month was June 2026 with 3.
CVEs per month
Last 12 months, by publish date
1025/101125/111225/120126/010226/020326/030426/040526/050626/060726/070826/080926/09
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- —
- Publish → KEV
- —
- Last 90 days
- 0 prev 3
3
Total CVEs
1
Critical
0
CISA KEV
0
Exploited
Worst active — by depth score
CVE-2026-8467CriticalPhoenixStorybook: Unauthenticated remote code execution via HEEx template injection in phoenix_storybook playground65CVE-2026-8469HighPhoenixStorybook: Unbounded atom creation from LiveView event params (atom-table DoS)41CVE-2026-47068LowPhoenixStorybook has cross-session PubSub topic injection via URL parameter14
phoenix_storybook vulnerabilities
CVEs affecting phoenix_storybook, newest first. Open any entry for full detail, references, and exploit status.
3 CVEsRSS
CVE-2026-8467CriticalPoCPhoenixStorybook: Unauthenticated remote code execution via HEEx template injection in phoenix_storybook playground
PhoenixStorybook: Unauthenticated remote code execution via HEEx template injection in phoenix_storybook playground
▾ Abyssalphoenix_storybook · phoenix_storybookEPSS 2.1%via GHSA
CVE-2026-8469HighPhoenixStorybook: Unbounded atom creation from LiveView event params (atom-table DoS)
PhoenixStorybook: Unbounded atom creation from LiveView event params (atom-table DoS)
▾ Twilightphoenix_storybook · phoenix_storybookEPSS 0.52%via GHSA
CVE-2026-47068LowPhoenixStorybook has cross-session PubSub topic injection via URL parameter
PhoenixStorybook has cross-session PubSub topic injection via URL parameter
▾ Sunlitphoenix_storybook · phoenix_storybookEPSS 0.53%via GHSA