Retour à la veille
CVE-2026-52686
Score CVSS
3.7
LOW
Description détaillée
The issue is a DNSSEC validation bypass where wildcard expansion proofs (NSEC/NSEC3 records) are accepted without signature validation when the wildcard answer is a CNAME or DNAME record.
Vecteur d'attaque (CVSS)
Vecteur brut :CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
Dernières Vulnérabilités
CVE-2026-65758
The front-end Submissions view did not enforce access control. An unauthenticated visitor could therefore list a form's submissions.
VOIR DÉTAILS
CVE-2026-65757
The editor popup could expose restricted module data to authenticated users without the required module permissions or valid request tokens.
VOIR DÉTAILS
CVE-2026-65756
Shortcut configuration accepted arbitrary inline JavaScript.
VOIR DÉTAILS
