Malformed port in the Host header can crash the Node adapter
Astro security advisories
All 44 advisories Astro has published with an identifier, newest first. Severity is the one its publisher assigned, and the fix is the release the publisher named. Nothing on this page is our judgement.
- Advisories
- 4439 carry a CVE
- critical
- 1
- high
- 9
- medium
- 23
- low
- 11
- Fix in the archive
- 4of 44 matched to a release
- Oldest
- 14 Oct 20241.9 years ago
40 of these point at a version older than anything the archive holds, so there is no release page to link. That is a gap in what was collected, not evidence that the fix does not exist. This page is a copy of what the publisher published, kept for reference. The authoritative source for a security question is the publisher, and an advisory missing from here is not evidence that none exists. What this page does and does not tell you sets out the limits in full.
Newest first
Every productAuthorization bypass from missing path-segment boundary check when stripping the configured base
Netlify Image CDN allowlist bypass enables SSRF
Remote code execution through AVIF image optimization
Cross-site scripting via unescaped transition:* directive values on hydrated islands
XSS via unescaped spread attribute names in custom element rendering
composable `astro/hono` pipeline bypasses `security.checkOrigin` when `middleware()` is absent or misordered
Unauthenticated path override in the @astrojs/vercel ISR function
Reflected XSS via unescaped View Transition animation properties
Backslash-prefixed paths not recognized as internal by trailing-slash redirect in @astrojs/node
XML injection in @astrojs/rss via unescaped source and enclosure fields
@astrojs/netlify generates an overly-broad Netlify Image CDN allowlist because remotePatterns.pathname metacharacters are not escaped
Astro 6.4.7 Authorization Bypass via Decode Iteration Limit and Rewrite Path Canonicalization Mismatch
Reflected XSS via unescaped slot name
@astrojs/netlify broadens Astro image.remotePatterns in Netlify Image CDN config
XSS via Unescaped Attribute Names in Spread Props
Host header SSRF in prerendered error page fetch
Server island encrypted parameters vulnerable to cross-component replay
XSS via incomplete `</script>` sanitization in `define:vars` allows case-insensitive and whitespace-based bypass
SSRF via redirect following in Cloudflare image-binding-transform endpoint (incomplete fix for GHSA-qpr4)
Cache Poisoning due to incorrect error handling when if-match header is malformed
Remote allowlist bypass via unanchored matchPathname wildcard
Memory exhaustion DoS due to missing request body size limit in Server Islands
Unauthenticated Path Override via `x-astro-path` / `x_astro_path`
Full-Read SSRF in error rendering via Host: header injection
SSRF due to missing allowlist enforcement in remote image inferSize
Memory exhaustion DoS due to missing request body size limit in Server Actions
bypass for CVE-2025-64765
Arbitrary Local File Read in Astro Development Server
Cross Site Scripting in /_image endpoint in Astro Cloudflare adapter
Reflected XSS via the server islands feature
Middleware authentication checks based on url.pathname can be bypassed via url encoded values
URL manipulation via unsanitized headers leads to path-based middleware protections bypass and potential SSRF/cache-poisoning + CVE-2025-61925 bypass
Reflected XSS in Astro development server error page
Bypass of image proxy domain validation (CVE-2025-58179) - SSRF and potential XSS
Validate Changesets workflow vulnerable to arbitrary code execution
`X-Forwarded-Host` reflected with no validation
Server-Side Request Forgery via /_image endpoint in Astro Cloudflare adapter
Unauthorized third-party images in Astro’s _image endpoint
Trailing slash handling causes open redirect issue
Trailing slash handling causes open redirect issue
Server source code is exposed to the public if sourcemaps are enabled
Bypass CSRF Middleware (security.checkOrigin)
DOM Clobbering Gadget found in astro's client-side router that leads to XSS