next-tinacms-azure
npm2 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting next-tinacms-azurepage 1 of 1
- CVE-2026-59992MEDIUMCVSS 5.4EG 5.4✓ Fixed in 14.0.42026-08-19
Tina is a headless content management system. Prior to next-tinacms-s3 23.0.4, next-tinacms-dos 23.0.4, next-tinacms-azure 14.0.4, and next-tinacms-cloudinary 26.0.4, the first-party production media adapters pass attacker-controlled objec…
- CVE-2026-63506HIGHCVSS 8.8EG 8.8✓ Fixed in 15.0.12026-09-16
Tina is a headless content management system. Prior to @tinacms/auth 1.1.4 and next-tinacms-azure 15.0.1, isAuthorized accepts a request-controlled clientID and asks isUserAuthorized to validate the bearer token against that selected TinaC…
Check whether next-tinacms-azure is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for next-tinacms-azure CVEs against the assets you own.
Start Free Scan →