CVE-2026-90806 | DjangoCRM django-crm up to 1.2 Bulk Case Update bulk_views.py BulkUpdateCasesView authorization (Issue 745)
A vulnerability identified as critical has been detected in DjangoCRM django-crm up to 1.2. This vulnerability affects the function BulkUpdateCasesView of the file backend/cases/bulk_views.py of the component Bulk Case Update. The manipulation leads to missing authorization.
This vulnerability is uniquely identified as CVE-2026-90806. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.VulDB Recent EntriesRead More