CVE-2026-93455

CVE-2026-93455 published: django-page-cms through 2.0.13 fails to properly validate page permissions in admin helper views, allowing any staff account to read arbitrary page content and stored media paths. Attackers with low-privilege staff credentials can enumerate content identifi...

View full NVD advisory → ← Back to CVE watch