| Bug | bullseye | bookworm | trixie | forky | sid | Description |
|---|
| CVE-2026-4631 | vulnerable | fixed | vulnerable (no DSA) | vulnerable | fixed | Cockpit's remote login feature passes user-supplied hostnames and user ... |
| CVE-2024-6126 | vulnerable (no DSA, ignored) | fixed | fixed | fixed | fixed | A flaw was found in the cockpit package. This flaw allows an authentic ... |
| CVE-2021-3698 | vulnerable (no DSA) | fixed | fixed | fixed | fixed | A flaw was found in Cockpit in versions prior to 260 in the way it han ... |
| CVE-2021-3660 | vulnerable (no DSA, ignored) | fixed | fixed | fixed | fixed | Cockpit (and its plugins) do not seem to protect itself against clickj ... |