CVE-2026-54569 | Senaite Core up to 2.6.0 JSON API record.py set_fields_from_request improper authorization
A vulnerability classified as critical has been found in Senaite Core up to 2.6.0. This impacts the function set_fields_from_request of the file src/senaite/core/browser/fields/record.py of the component JSON API. Performing a manipulation results in improper authorization.
This vulnerability is reported as CVE-2026-54569. The attack is possible to be carried out remotely. No exploit exists.VulDB Recent EntriesRead More