8.0
12 years ago
16 days ago
Known vulnerabilities in the wagtail package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
wagtail is an open source content management system built on Django. Affected versions of this package are vulnerable to Improper Handling of Insufficient Permissions or Privileges in the How to fix Improper Handling of Insufficient Permissions or Privileges? Upgrade | [,7.0.9)[7.1rc1,7.3.4)[7.4rc1,7.4.3)[8.0rc1,8.0rc2) |
wagtail is an open source content management system built on Django. Affected versions of this package are vulnerable to Improper Handling of Insufficient Permissions or Privileges via the How to fix Improper Handling of Insufficient Permissions or Privileges? Upgrade | [,7.0.9)[7.1rc1,7.3.4)[7.4rc1,7.4.3)[8.0rc1,8.0rc2) |
wagtail is an open source content management system built on Django. Affected versions of this package are vulnerable to Improper Handling of Insufficient Permissions or Privileges via the API V2. An attacker can access filenames and names of documents and images in descendant collections of private collections by querying the API without proper authentication. How to fix Improper Handling of Insufficient Permissions or Privileges? Upgrade | [,7.0.9)[7.1rc1,7.3.4)[7.4rc1,7.4.3)[8.0rc1,8.0rc2) |
wagtail is an open source content management system built on Django. Affected versions of this package are vulnerable to Improper Handling of Insufficient Permissions or Privileges in the document retrieval. An attacker can confirm the existence of a document with a known SHA1 hash by sending crafted HTTP headers to the document endpoint, even without proper permissions or knowledge of the filename. How to fix Improper Handling of Insufficient Permissions or Privileges? Upgrade | [,7.0.9)[7.1rc1,7.3.4)[7.4rc1,7.4.3)[8.0rc1,8.0rc2) |
wagtail is an open source content management system built on Django. Affected versions of this package are vulnerable to Improper Handling of Insufficient Permissions or Privileges via the Note: This is only exploitable if the attacker has access to the Wagtail admin interface. How to fix Improper Handling of Insufficient Permissions or Privileges? Upgrade | [,7.0.9)[7.1rc1,7.3.4)[7.4rc1,7.4.3)[8.0rc1,8.0rc2) |