CVE-2026-79774 | WinterCMS Winter up to 1.2.12 Twig SecurityPolicy privileges management
A vulnerability was found in WinterCMS Winter up to 1.2.12. It has been classified as problematic. Affected by this issue is the function saveQuietly/deleteQuietly/increment/decrement/newQuery of the component Twig SecurityPolicy. The manipulation leads to improper privilege management.
This vulnerability is traded as CVE-2026-79774. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is recommended.VulDB Recent EntriesRead More