VDB

GO-2026-4537

GO-2026-4537 PUBLISHED

Caddy is vulnerable to cross-origin config application via local admin API /load in github.com/caddyserver/caddy/v2

Affected Products

VendorProductVersions
github.comcaddyserver/caddy/v20, 0

Timeline

  • Feb 26, 2026 CVE Published
  • Feb 26, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›