CVE-2026-54622 | django-cms Django CMS up to 5.0.7 Copy Plugins placeholderadmin.py _copy_plugin_to_clipboard source_placeholder_id/source_plugin_id improper authorization

SecurityVulns

A vulnerability was found in django-cms Django CMS up to 5.0.7. It has been declared as problematic. This issue affects the function _copy_plugin_to_clipboard of the file cms/admin/placeholderadmin.py of the component Copy Plugins. Executing a manipulation of the argument source_placeholder_id/source_plugin_id can lead to improper authorization.

This vulnerability is handled as CVE-2026-54622. The attack can be executed remotely. There is not any exploit available.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More