Vulnerability index

Browse CVEs

40 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Pi Hole HIGH 8.8
CVE-2026-50130

Pi-hole is a DNS sinkhole that protects devices from unwanted content without installing any client-side software. From 6.0 to 6.4.2, a user with cod…

Fix: 6.4.3+
Fix from $1,950 2026-07-14
Ftldns HIGH 8.8
CVE-2026-39849

Pi-hole FTL is the core engine of the Pi-hole network-level advertisement and tracker blocker. In versions before 6.6.1, the `dns.interface` configur…

Patch available
Fix from $1,950 2026-05-05
Ftldns HIGH 8.8
CVE-2026-35517

FTLDNS (pihole-FTL) provides an interactive API and also generates statistics for Pi-hole's Web interface. From 6.0 to before 6.6, the Pi-hole FTL en…

Fix: after 6.5
Fix from $1,950 2026-04-07
Ftldns HIGH 8.8
CVE-2026-35518

FTLDNS (pihole-FTL) provides an interactive API and also generates statistics for Pi-hole's Web interface. From 6.0 to before 6.6, the Pi-hole FTL en…

Fix: after 6.5
Fix from $1,950 2026-04-07
Ftldns HIGH 8.8
CVE-2026-35519

FTLDNS (pihole-FTL) provides an interactive API and also generates statistics for Pi-hole's Web interface. From 6.0 to before 6.6, the Pi-hole FTL en…

Fix: after 6.5
Fix from $1,950 2026-04-07
Ftldns HIGH 8.8
CVE-2026-35520

FTLDNS (pihole-FTL) provides an interactive API and also generates statistics for Pi-hole's Web interface. From 6.0 to before 6.6, the Pi-hole FTL en…

Fix: after 6.5
Fix from $1,950 2026-04-07
Ftldns HIGH 8.8
CVE-2026-35521

FTLDNS (pihole-FTL) provides an interactive API and also generates statistics for Pi-hole's Web interface. From 6.0 to before 6.6, the Pi-hole FTL en…

Fix: after 6.5
Fix from $1,950 2026-04-07
Ftldns MEDIUM 6.1
CVE-2026-35491

FTLDNS (pihole-FTL) provides an interactive API and also generates statistics for Pi-hole's Web interface. From 6.0 to before 6.6, Pi-hole FTL suppor…

Fix: 6.6+
Fix from $1,600 2026-04-07
Pi Hole MEDIUM 6.7
CVE-2026-33727

Pi-hole is a Linux network-level advertisement and Internet tracker blocking application. Version 6.4 has a local privilege-escalation vulnerability …

Mitigation only
Fix from $1,600 2026-04-06
Web Interface MEDIUM 6.1
CVE-2026-33403

Pi-hole Admin Interface is a web interface for managing Pi-hole, a network-level ad and internet tracker blocking application. From 6.0 to before 6.5…

Fix: after 6.4.1
Fix from $1,600 2026-04-06
Web Interface MEDIUM 6.1
CVE-2026-33404

Pi-hole Admin Interface is a web interface for managing Pi-hole, a network-level ad and internet tracker blocking application. From 6.0 to before 6.5…

Fix: after 6.4.1
Fix from $1,600 2026-04-06
Web Interface MEDIUM 6.1
CVE-2026-33406

Pi-hole Admin Interface is a web interface for managing Pi-hole, a network-level ad and internet tracker blocking application. From 6.0 to before 6.5…

Fix: after 6.4.1
Fix from $1,600 2026-04-06
Web Interface CRITICAL 9.8
CVE-2026-33765

Pi-hole Admin Interface is a web interface for managing Pi-hole, a network-level ad and internet tracker blocking application. Versions prior to 6.0 …

Fix: 6.0+
Fix from $2,300 2026-03-27
Web Interface MEDIUM 5.4
CVE-2026-26952

Pi-hole Admin Interface is a web interface for managing Pi-hole, a network-level ad and internet tracker blocking application. Versions 6.4 and below…

Fix: 6.4.1+
Fix from $1,600 2026-02-19
Web Interface MEDIUM 5.4
CVE-2026-26953

Pi-hole Admin Interface is a web interface for managing Pi-hole, a network-level ad and internet tracker blocking application. Versions 6.0 and abov…

Fix: 6.4.1+
Fix from $1,600 2026-02-19
Web Interface HIGH 8.2
CVE-2025-59151

Pi-hole Admin Interface is a web interface for managing Pi-hole, a network-level advertisement and internet tracker blocking application. Pi-hole Adm…

Fix: 6.3+
Fix from $1,950 2025-10-27
Web Interface MEDIUM 6.1
CVE-2025-53533

Pi-hole Admin Interface is a web interface for managing Pi-hole, a network-level advertisement and internet tracker blocking application. Pi-hole Adm…

Fix: 6.3+
Fix from $1,600 2025-10-27
Web Interface MEDIUM 5.4
CVE-2025-32785

Pi-hole Admin Interface is a web interface for managing Pi-hole, a network-level advertisement and internet tracker blocking application. Pi-hole Adm…

Fix: 6.3+
Fix from $1,600 2025-10-27
Pi Hole HIGH 8.8
CVE-2025-34087

An authenticated command injection vulnerability exists in Pi-hole versions up to 3.3. When adding a domain to the allowlist via the web interface, t…

Fix: after 3.3
Fix from $1,950 2025-07-03
Pi Hole HIGH 7.5
CVE-2024-44069

Pi-hole before 6 allows unauthenticated admin/api.php?setTempUnit= calls to change the temperature units of the web dashboard. NOTE: the supplier rep…

Fix: 6.0+
Fix from $1,950 2024-08-19
Pi Hole HIGH 8.8
CVE-2024-34361

Pi-hole is a DNS sinkhole that protects devices from unwanted content without installing any client-side software. A vulnerability in versions prior …

Fix: 5.18.3+
Fix from $1,950 2024-07-05
Pi Hole MEDIUM 6.5
CVE-2024-28247

The Pi-hole is a DNS sinkhole that protects your devices from unwanted content without installing any client-side software. A vulnerability has been …

Fix: 5.18+
Fix from $1,600 2024-03-27
Web Interface HIGH 8.8
CVE-2023-23614

Pi-hole®'s Web interface (based off of AdminLTE) provides a central location to manage your Pi-hole. Versions 4.0 and above, prior to 5.18.3 are vuln…

Fix: 5.18.3+
Fix from $1,950 2023-01-26
Adminlte MEDIUM 5.3
CVE-2022-23513EPSS 40%

Pi-Hole is a network-wide ad blocking via your own Linux hardware, AdminLTE is a Pi-hole Dashboard for stats and more. In case of an attack, the thre…

Fix: after 5.17
Fix from $1,600 2022-12-23
Web Interface MEDIUM 5.4
CVE-2021-41175

Pi-hole's Web interface (based on AdminLTE) provides a central location to manage one's Pi-hole and review the statistics generated by FTLDNS. Prior …

Fix: 5.8+
Fix from $1,600 2021-10-26
Web Interface MEDIUM 6.1
CVE-2021-3811

adminlte is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Fix: 5.6+
Fix from $1,600 2021-09-17
Web Interface MEDIUM 6.1
CVE-2021-3812

adminlte is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Fix: 5.6+
Fix from $1,600 2021-09-17
Web Interface HIGH 7.5
CVE-2021-3706

adminlte is vulnerable to Sensitive Cookie Without 'HttpOnly' Flag

Fix: 5.6+
Fix from $1,950 2021-09-15
Pi Hole HIGH 8.8
CVE-2021-32706EPSS 60%

Pi-hole's Web interface provides a central location to manage a Pi-hole instance and review performance statistics. Prior to Pi-hole Web interface ve…

Fix: 5.5.1+
Fix from $1,950 2021-08-04
Ftldns HIGH 8.8
CVE-2021-29448

Pi-hole is a Linux network-level advertisement and Internet tracker blocking application. The Stored XSS exists in the Pi-hole Admin portal, which ca…

Fix: 5.5+
Fix from $1,950 2021-04-15