CVE-2026-44472 | Saleor 2.10.0rc1/3.21.66/3.22.62/3.23.21 Account Activation confirm_account.py privileges management
A vulnerability, which was classified as critical, was found in Saleor 2.10.0rc1/3.21.66/3.22.62/3.23.21. This impacts an unknown function of the file saleor/graphql/account/mutations/account/confirm_account.py of the component Account Activation. Such manipulation leads to improper privilege management.
This vulnerability is uniquely identified as CVE-2026-44472. The attack can be launched remotely. No exploit exists.
You should upgrade the affected component.VulDB Recent EntriesRead More