Retour à la veille
CVE-2026-65757
Description détaillée
The editor popup could expose restricted module data to authenticated users without the required module permissions or valid request tokens.
Références et Patchs
Dernières Vulnérabilités
CVE-2026-65758
The front-end Submissions view did not enforce access control. An unauthenticated visitor could therefore list a form's submissions.
VOIR DÉTAILS
CVE-2026-65756
Shortcut configuration accepted arbitrary inline JavaScript.
VOIR DÉTAILS
CVE-2026-65755
Date-sensitive query cache keys did not retain a bounded time component. Cached results could remain active across future publication or expiry boundaries, potentially exposing content after it should become unavailable.
VOIR DÉTAILS
