Threats Tagged 'cve-2026-55228'
View all threats tagged with 'cve-2026-55228'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-55228'
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-55228: CWE-639: Authorization Bypass Through User-Controlled Key in WeblateOrg weblateCVE-2026-55228 0 Weblate is a web-based continuous localization platform used to manage software translations. In versions prior to 2026.7, the REST API did not properly enforce the scope of project- and workspace-scoped teams, allowing a user to submit invalid team configurations through the API. By assigning projects to a team via these unvalidated requests, a user could grant access to projects they were not authorized to see or manage. This could expose private projects and permit translation, repository, and project-management operations outside the user's intended permission scope. This issue is fixed in version 2026.7. Join the discussion | CVE Database V5 | 08/26/2026, 20:14:02 UTC Added: 08/26/2026, 21:07:41 UTC |
Showing 1 to 1 of 1 result