« Back to list

Cleanuparr

Cleanuparr: vulnerabilities and CVEs

Cleanuparr has 2 published vulnerabilities, 2 of them in the last 12 months. 1 are rated critical and 0 are listed by CISA as actively exploited.

CVEs2
Last 12 months2
Critical1
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2026-44184High (8)0.19%—May 12, 2026
Cleanuparr is a tool for automating the cleanup of unwanted or blocked files in Sonarr, Radarr, and supported download clients like qBittorrent. Prior to 2.9.10, Cleanuparr's global CORS policy reflects every request…
CVE-2026-44183Critical (9.8)0.33%—May 12, 2026
Cleanuparr is a tool for automating the cleanup of unwanted or blocked files in Sonarr, Radarr, and supported download clients like qBittorrent. Prior to 2.9.10, TrustedNetworkAuthenticationHandler.ResolveClientIp…

🎯 How it gets exploited (ATT&CK techniques)

  1. T1012 Query Registry1
  2. T1078 Valid Accounts1
  3. T1190 Exploit Public-Facing Application1
  4. T1203 Exploitation for Client Execution1

Number of CVEs of this technology mapped to each exploitation or primary-impact technique.