CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-56266

criticalCVSS 9.8covered by 1 sourcefirst seen 2026-06-16
Summary Multiple security vulnerabilities in the Crawl4AI Docker API server affecting endpoints for crawling, markdown/LLM extraction, screenshots, PDFs, webhooks, monitoring, JavaScript execution, and configuration. Vulnerabilities 1. Arbitrary File Write via /screenshot and /pdf (CWE-22, CVSS 9.1) The output_path parameter accepts arbitrary filesystem paths with no validation. An attacker can overwrite server files (DoS) or write to any appuser-writable location. Fix: Added validate_output_path() restricting writes to CRAWL4AI_OUTPUT_DIR (/tmp/crawl4ai-outputs by default). Added Pydantic field_validator rejecting .. traversal sequences. 2. SSRF via Webhook URL (CWE-918, CVSS 8.6) Webhook URLs in /crawl/job and /llm/job accept internal/private IPs with no validation, enabling Server-Side Request Forgery against cloud metadata endpoints (169.254.169.254), internal services, and Docker networks. Fix: Added validate_webhook_url() with blocklist for RFC 1918, loopback, link-local, cloud metadata IPs and hostnames. Validation at both job submission and send time. Explicit follow_redirects=False. 3. Authentication Bypass on Monitor Endpoints (CWE-306, CVSS 6.5) The monitor router was mounted without token_dep dependency, making all monitoring endpoints (including destructive ones like /monitor/actions/cleanup) accessible without authentication. Fix: Added dependencies=[Depends(token_dep)] to monitor router. Added explicit token check on WebSocket /monitor/ws endpoint. 4. Stored XSS in Monitor Dashboard (CWE-79, CVSS 6.1) URLs and error messages rendered in the monitor dashboard via innerHTML without escaping, enabling stored XSS via crafted crawl URLs. Fix: Server-side html.escape() on URL and error storage. Client-side escapeHtml() wrapper on all innerHTML template injections. 5. Arbitrary JavaScript Execution via /execute_js (CWE-94, CVSS 8.1) The /execute_js endpoint accepts and executes arbitrary JavaScript in the server's browser with --disable-web-s

⚡ Watch CVE-2026-56266

Get an email if CVE-2026-56266 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (1)

External references

NVD record for CVE-2026-56266

CVE.org record

Embed the live status

CVE-2026-56266 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-56266 status](https://www.csirts.com/badge/CVE-2026-56266)](https://www.csirts.com/cve/CVE-2026-56266)