Caido is a focused web-application penetration-testing platform with a niche vulnerability footprint centered on its core product. The observed weakness class involves authentication bypass through spoofing, reflecting the authentication and session-handling concerns relevant to a security-testing tool. Current CVE counts, severity distribution, and exploitation activity are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Caido over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-24853CRITICAL Caido is a web security auditing toolkit. Prior to 0.55.0, Caido blocks non whitelisted domains to reach out through the 8080 port, and shows Host/IP is not allowed to connect to C | Feb 13, 2026 | 9.8 | 31 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Caido.
Media articles that mention a CVE ID that affects a product developed by Caido — matched by CVE ID, not by vendor name.