django CMS 是一款基于 Django 构建、易于使用且对开发者友好的企业级内容管理系统。在 5.0.9 版本之前, 函数未能对使用 的非 对象进行正确的授权检查。攻击者只需以具有活动状态的站点管理员用户身份,并猜测 和 的值,即可无需具备 权限或模型级别的视图或更改权限,直接请求端点 。该请求的响应会泄露前端可编辑对象的占位符槽位名称、插件树结构、插件标识符、标签以及对象的存在性信息。修复方案通过在非 分支中应用 检查来加强授权逻辑,同时确保仅具有视图权限的用户在结构面板中仍处于只读状态。该问题已在 5.
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| django-cms | django-cms | < 5.0.9 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| django-cms | django-cms | < 5.0.9 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-54623 | 7.1 HIGH | django CMS: Plugin move endpoint allows cyclic reparenting (DoS) |
| CVE-2026-54622 | 6.5 MEDIUM | django CMS: Clipboard copy IDOR discloses unauthorized plugin content |
| CVE-2026-54624 | 6.5 MEDIUM | django CMS: Structure endpoint bypasses page-view permission |
| CVE-2026-63003 | 6.5 MEDIUM | django CMS: Broken access control in page *Duplicate* allows reading the content of any pa |
| CVE-2026-54625 | 4.8 MEDIUM | django CMS: Page cache ignores plugin-declared Vary headers (disclosure & poisoning) |
| CVE-2026-75526 | 4.4 MEDIUM | django CMS: Stored XSS in edit-mode plugin exception rendering |
No comments yet