Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-150
  • PyPI/wagtail
See record for full details 11 May
  • Fix available
  • Severity - 5.3 (Medium)
PYSEC-2026-149
  • PyPI/wagtail
See record for full details 11 May
  • Fix available
  • Severity - 6.5 (Medium)
PYSEC-2026-148
  • PyPI/wagtail
See record for full details 11 May
  • Fix available
  • Severity - 6.5 (Medium)
PYSEC-2026-147
  • PyPI/wagtail
See record for full details 11 May
  • Fix available
  • Severity - 4.3 (Medium)
PYSEC-2026-146
  • PyPI/wagtail
See record for full details 11 May
  • Fix available
  • Severity - 6.5 (Medium)
GHSA-67rv-mg8q-5pf3
  • PyPI/wagtail
Wagtail has improper permission handling when copying pages 08 May
  • Fix available
  • Severity - 6.5 (Medium)
GHSA-p5gm-92h4-6pv6
  • PyPI/wagtail
Wagtail has improper restriction handling on Documents and Images API 08 May
  • Fix available
  • Severity - 5.3 (Medium)
GHSA-pwm3-7fv4-g6xx
  • PyPI/wagtail
Wagtail has improper permission handling when deleting form submissions 08 May
  • Fix available
  • Severity - 6.5 (Medium)
GHSA-c4mr-889m-vgf6
  • PyPI/wagtail
Wagtail has improper permission handling when viewing page history 08 May
  • Fix available
  • Severity - 4.3 (Medium)
GHSA-c6wj-9vcj-75pj
  • PyPI/wagtail
Wagtail has improper permission handling when comparing revisions 08 May
  • Fix available
  • Severity - 6.5 (Medium)
GHSA-p4v8-rw59-93cq
  • PyPI/wagtail
Wagtail Vulnerable to Cross-site Scripting in simple_translation admin interface 03 Mar
  • Fix available
  • Severity - 6.1 (Medium)
GHSA-p5cm-246w-84jm
  • PyPI/wagtail
Wagtail Vulnerable to Cross-site Scripting in TableBlock class attributes 03 Mar
  • Fix available
  • Severity - 6.1 (Medium)
GHSA-4qvv-g3vr-m348
  • PyPI/wagtail
Wagtail has improper permission handling on admin preview endpoints 03 Feb
  • Fix available
  • Severity - 5.1 (Medium)
PYSEC-2024-86
  • PyPI/wagtail
  • github.com/wagtail/wagtail
See record for full details 11 Jul 2024
  • Fix available
  • Severity - 4.9 (Medium)
GHSA-jmp3-39vp-fwg8
  • PyPI/wagtail
Wagtail regular expression denial-of-service via search query parsing 11 Jul 2024
  • Fix available
  • Severity - 7.1 (High)
GHSA-xxfm-vmcf-g33f
  • PyPI/wagtail
Improper Handling of Insufficient Permissions in `wagtail.contrib.settings` 02 Jun 2024
  • Fix available
  • Severity - 5.5 (Medium)