CVE-2026-84799 | craftcms Craft CMS up to 5.10.x GraphQL access control

SecurityVulns

A vulnerability was found in craftcms Craft CMS up to 5.10.x and classified as problematic. This impacts an unknown function of the component GraphQL. Such manipulation of the argument author/authors/uploader/draftCreator/revisionCreator leads to improper access controls.

This vulnerability is documented as CVE-2026-84799. The attack can be executed remotely. There is not any exploit available.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More