Catalog / Astro

Astro security advisories

All 44 advisories Astro has published with an identifier, newest first. Severity is the one its publisher assigned, and the fix is the release the publisher named. Nothing on this page is our judgement.

Advisories
4439 carry a CVE
critical
1
high
9
medium
23
low
11
Fix in the archive
4of 44 matched to a release
Oldest
14 Oct 20241.9 years ago

40 of these point at a version older than anything the archive holds, so there is no release page to link. That is a gap in what was collected, not evidence that the fix does not exist. This page is a copy of what the publisher published, kept for reference. The authoritative source for a security question is the publisher, and an advisory missing from here is not evidence that none exists. What this page does and does not tell you sets out the limits in full.

Newest first

Every product
CVE-2026-59727low

Cross-site scripting via unescaped transition:* directive values on hydrated islands

GHSA-7pw4-f3q4-r2p2Fixed in 7.0.4, not held here
CVE-2026-59729low

XSS via unescaped spread attribute names in custom element rendering

GHSA-f48w-9m4c-m7f5Fixed in 7.0.5, not held here
CVE-2026-73423low

composable `astro/hono` pipeline bypasses `security.checkOrigin` when `middleware()` is absent or misordered

GHSA-8mv7-9c27-98vcFixed in 7.0.5, not held here
CVE-2026-73424medium

Unauthenticated path override in the @astrojs/vercel ISR function

GHSA-x27w-589x-frm2Fixed in 11.0.3, not held here
CVE-2026-73422medium

Reflected XSS via unescaped View Transition animation properties

GHSA-4g3v-8h47-v7g6Fixed in 7.1.0, not held here
CVE-2026-59730low

Backslash-prefixed paths not recognized as internal by trailing-slash redirect in @astrojs/node

GHSA-r557-wffq-wvrcFixed in 11.0.2, not held here
CVE-2026-59728medium

XML injection in @astrojs/rss via unescaped source and enclosure fields

GHSA-8j5q-mfj2-5q9qFixed in 4.0.19, not held here
CVE-2026-73425low

@astrojs/netlify generates an overly-broad Netlify Image CDN allowlist because remotePatterns.pathname metacharacters are not escaped

GHSA-hp3v-mfqw-h74cFixed in 8.1.2, not held here
CVE-2026-59731high

Astro 6.4.7 Authorization Bypass via Decode Iteration Limit and Rewrite Path Canonicalization Mismatch

GHSA-vj59-8hwv-xxmvFixed in 6.4.8, not held here
CVE-2026-50146high

Reflected XSS via unescaped slot name

GHSA-8hv8-536x-4wqpFixed in 6.3.3, not held here
CVE-2026-54300medium

@astrojs/netlify broadens Astro image.remotePatterns in Netlify Image CDN config

GHSA-529g-xq4f-cw38Fixed in 7.0.13, not held here
CVE-2026-54298medium

XSS via Unescaped Attribute Names in Spread Props

GHSA-jrpj-wcv7-9fh9Fixed in 6.4.6, not held here
CVE-2026-54299high

Host header SSRF in prerendered error page fetch

GHSA-2pvr-wf23-7pc7Fixed in 6.4.6, not held here
CVE-2026-45028low

Server island encrypted parameters vulnerable to cross-component replay

GHSA-xr5h-phrj-8vxvFixed in 6.1.10, not held here
CVE-2026-41067medium

XSS via incomplete `</script>` sanitization in `define:vars` allows case-insensitive and whitespace-based bypass

GHSA-j687-52p2-xcffFixed in 6.1.6, not held here
CVE-2026-41321low

SSRF via redirect following in Cloudflare image-binding-transform endpoint (incomplete fix for GHSA-qpr4)

GHSA-88gm-j2wx-58h6Fixed in 13.1.10, not held here
CVE-2026-41322medium

Cache Poisoning due to incorrect error handling when if-match header is malformed

GHSA-c57f-mm3j-27q9Fixed in 10.0.5, not held here
CVE-2026-33769low

Remote allowlist bypass via unanchored matchPathname wildcard

GHSA-g735-7g2w-hh3fFixed in 5.18.1, not held here
CVE-2026-29772medium

Memory exhaustion DoS due to missing request body size limit in Server Islands

GHSA-3rmj-9m5h-8fpvFixed in 10.0.0, not held here
CVE-2026-33768medium

Unauthenticated Path Override via `x-astro-path` / `x_astro_path`

GHSA-mr6q-rp88-fx84Fixed in 10.0.2, not held here
CVE-2026-25545medium

Full-Read SSRF in error rendering via Host: header injection

GHSA-qq67-mvv5-fw3gFixed in 9.5.4, not held here
CVE-2026-27829medium

SSRF due to missing allowlist enforcement in remote image inferSize

GHSA-cj9f-h6r6-4cx2Fixed in 9.5.4, not held here
CVE-2026-27729medium

Memory exhaustion DoS due to missing request body size limit in Server Actions

GHSA-jm64-8m5q-4qh8Fixed in 9.5.4, not held here
CVE-2025-66202medium

bypass for CVE-2025-64765

GHSA-whqg-ppgf-wp8c
CVE-2025-64757low

Arbitrary Local File Read in Astro Development Server

GHSA-x3h8-62x9-952gFixed in 5.14.3, not held here
CVE-2025-65019medium

Cross Site Scripting in /_image endpoint in Astro Cloudflare adapter

GHSA-fvmw-cj7j-j39qFixed in 5.15.9, not held here
CVE-2025-64764high

Reflected XSS via the server islands feature

GHSA-wrwg-2hg8-v723Fixed in 5.15.8, not held here
CVE-2025-64765medium

Middleware authentication checks based on url.pathname can be bypassed via url encoded values

GHSA-ggxq-hp9w-j794Fixed in 5.15.8, not held here
CVE-2025-64525medium

URL manipulation via unsanitized headers leads to path-based middleware protections bypass and potential SSRF/cache-poisoning + CVE-2025-61925 bypass

GHSA-hr2q-hp5q-x767Fixed in 5.15.5, not held here
CVE-2025-64745low

Reflected XSS in Astro development server error page

GHSA-w2vj-39qv-7vh7Fixed in 5.15.6, not held here
CVE-2025-59837high

Bypass of image proxy domain validation (CVE-2025-58179) - SSRF and potential XSS

GHSA-qcpr-679q-rhm2Fixed in 5.13.10, not held here
GHSA-j47w-4mr3-8gq6high

Validate Changesets workflow vulnerable to arbitrary code execution

CVE-2025-61925medium

`X-Forwarded-Host` reflected with no validation

GHSA-5ff5-9fcw-vg88Fixed in 5.14.2, not held here
CVE-2025-58179high

Server-Side Request Forgery via /_image endpoint in Astro Cloudflare adapter

GHSA-qpr4-c339-7vq8Fixed in 12.6.6, not held here
CVE-2025-55303high

Unauthorized third-party images in Astro’s _image endpoint

GHSA-xf8x-j4p2-f749Fixed in 5.13.2, not held here
CVE-2025-55207medium

Trailing slash handling causes open redirect issue

GHSA-9x9c-ghc5-jhw9Fixed in 9.4.1, not held here
CVE-2025-54793medium

Trailing slash handling causes open redirect issue

GHSA-cq8c-xv66-36gwFixed in 5.12.8, not held here
CVE-2024-56159high

Server source code is exposed to the public if sourcemaps are enabled

GHSA-49w6-73cw-chjrFixed in 5.0.8, not held here
CVE-2024-56140medium

Bypass CSRF Middleware (security.checkOrigin)

GHSA-c4pw-33h3-35xwFixed in 4.16.17, not held here
CVE-2024-47885medium

DOM Clobbering Gadget found in astro's client-side router that leads to XSS

GHSA-m85w-3h95-hcf9Fixed in 4.16.1, not held here