IA Squad
SearchPT

OctoPrint

python · OctoPrintHeads-up

OctoPrint HTML/JS Injection in Suppressed Command Popups

OctoPrint versions up to 1.11.7, 2.0.0rc1, and 2.0.0rc2 allow arbitrary HTML and JavaScript injection into Suppressed Command noti

24 Jun 2026 · schedule it
python · OctoPrintCritical

OctoPrint File Exfiltration via FILE_UPLOAD Permission (CVE-2025-XXXX)

A vulnerability in OctoPrint versions up to 1.

24 Jun 2026 · act now