Known vulnerabilities in the Uncanny Automator plugin
10 security advisories have been published for the Uncanny Automator plugin. Each entry below states what an attacker can do, what privilege they need, and the version the issue was fixed in.
- Uncanny Automator - Broken Access Control (CVE-2026-15025) HIGH
- Uncanny Automator - SQL Injection (CVE-2026-65462) HIGH
- Uncanny Automator - Remote Code Execution (CVE-2026-15008) HIGH
- Uncanny Automator - PHP Object Injection (CVE-2026-56031) HIGH
- Uncanny Automator - Remote Code Execution (CVE-2026-2269) HIGH
- Uncanny Automator - Cross-Site Scripting (XSS) (CVE-2025-15522) MEDIUM
- Uncanny Automator - PHP Object Injection (CVE-2025-3623) CRITICAL
- Uncanny Automator - Broken Access Control (CVE-2025-4520) MEDIUM
- Uncanny Automator - Privilege Escalation (CVE-2025-2075) HIGH
- Uncanny Automator - Server-Side Request Forgery (SSRF) (CVE-2024-13838) MEDIUM