CVE-2026-72709 | SPIP up to 4.4.17 Administrative Action editer_auteur nonce privileges management

SecurityVulns

A vulnerability has been found in SPIP up to 4.4.17 and classified as critical. The impacted element is the function editer_auteur of the component Administrative Action. This manipulation of the argument nonce causes improper privilege management.

This vulnerability is registered as CVE-2026-72709. Remote exploitation of the attack is possible. No exploit is available.

The affected component should be upgraded.VulDB Recent EntriesRead More