CVE-2026-43976

CVE-2026-43976 published: wger is a free, open-source workout and fitness manager. Prior to version 2.6, five gym management views in wger apply a flawed gym-scope guard (`gym_a != gym_b`) that silently passes when both operands are `None`. A trainer with `gym.gym_trainer` and `gym....

View full NVD advisory → ← Back to CVE watch