django CMS 是一个易用且对开发者友好的企业级内容管理系统,基于 Django 框架构建。在版本 5.0.8 至 5.0.9 之间, 中的 方法在编辑模式下插件渲染失败时,会将攻击者可控的已存储值传递给 。 具体而言,来自 、异常消息、占位符本身或 的值会被插值到一个名为 “cms-rendering-exception” 的标题中,随后通过 函数返回。由于该标题未经过转义处理,存储的 HTML 代码会在编辑器的浏览器中执行。此外,即使 Django 的 设置为 ,也无法阻止该自定义标题的渲染。 该漏洞已通
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| django-cms | django-cms | >= 5.0.8, < 5.0.9 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| django-cms | django-cms | >= 5.0.8, < 5.0.9 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-54623 | 7.1 HIGH | django CMS: Plugin move endpoint allows cyclic reparenting (DoS) |
| CVE-2026-54622 | 6.5 MEDIUM | django CMS: Clipboard copy IDOR discloses unauthorized plugin content |
| CVE-2026-54624 | 6.5 MEDIUM | django CMS: Structure endpoint bypasses page-view permission |
| CVE-2026-63003 | 6.5 MEDIUM | django CMS: Broken access control in page *Duplicate* allows reading the content of any pa |
| CVE-2026-54625 | 4.8 MEDIUM | django CMS: Page cache ignores plugin-declared Vary headers (disclosure & poisoning) |
| CVE-2026-61663 | 4.3 MEDIUM | django CMS: Missing authorization in `render_object_structure` discloses non-PageContent p |
No comments yet