Bounties
Partners
Community
Info
wagtail / wagtail
Project repository
A Django content management system focused on flexibility and user experience
Submit a report
FIRST INTERACTION
WITHIN
1 DAY
REVIEW
WITHIN
161 DAYS
FIX
WITHIN
5 DAYS
All employee accounts can access the /reports/site-history path even without per...
Oct 19th 2023
quyenheu
•
not applicable
leaked images from a user account that does not have access to the images direct...
Oct 16th 2023
quyenheu
•
pending
leaked all users names from a user without known permissions
Oct 20th 2023
quyenheu
•
Low
•
$5
Low
•
$5
User from Default Editor Groups (with permissions to add/replace documents) able...
Sep 1st 2023
dmdhrumilmistry
•
not applicable
User can move pages to Root
Sep 19th 2023
acciobugs
•
not applicable
CSV injection while export csv
Apr 12th 2023
lujiefsi
•
not applicable
Cross-Site Request Forgery (CSRF)
Sep 19th 2023
eingengraou
•
informative
Medium
CRITICAL
$0
HIGH
$0
MEDIUM
$0
LOW
$0