CVE-2026-82377

CVE-2026-82377 published: Missing Authorization in Apache Roller 6.1.5 allows an authenticated user to read, modify, or delete weblog content belonging to other weblogs through the legacy XML-RPC Blogger and MetaWeblog APIs, because the handlers authenticate the caller but do not ve...

View full NVD advisory → ← Back to CVE watch