FreePBX security-reporting

6 known vulnerabilities in FreePBX security-reporting, with patch priority, exploit likelihood and the news covering them.

Latest vulnerabilities

  • CVE-2026-75600 CVSS 8.6 high FreePBX is an open source IP PBX. Prior to version 17.0.9, authenticated users who are authorized to access the GraphQL api module…
  • CVE-2026-54710 CVSS 8.6 high FreePBX is an open source IP PBX. Prior to versions 16.0.40 and 17.0.7, a critical remote code execution (RCE) vulnerability exists in the…
  • CVE-2026-54708 CVSS 8.6 high FreePBX is an open source IP PBX. Prior to versions 16.0.72 and 17.0.7, a critical vulnerability exists in the FreePBX backup Module that…
  • CVE-2026-54675 CVSS 8.7 high FreePBX is an open source IP PBX. Prior to versions 16.0.10 and 17.0.5, a critical vulnerability exists in the sound language upload and…
  • CVE-2026-54674 CVSS 8.6 high FreePBX is an open source IP PBX. Prior to versions 16.0.39 and 17.0.7, users authenticated via User Control Panel (UCP) are able to…
  • CVE-2026-45562 CVSS 7.7 high FreePBX is an open source IP PBX. Prior to versions 16.0.4 and 17.0.6, the FreePBX Music on Hold (MoH) module contains a critical security…