CVE-2026-90806 | DjangoCRM django-crm up to 1.2 Bulk Case Update bulk_views.py BulkUpdateCasesView authorization (Issue 745)

SecurityVulns

A vulnerability identified as critical has been detected in DjangoCRM django-crm up to 1.2. This vulnerability affects the function BulkUpdateCasesView of the file backend/cases/bulk_views.py of the component Bulk Case Update. The manipulation leads to missing authorization.

This vulnerability is uniquely identified as CVE-2026-90806. The attack is possible to be carried out remotely. No exploit exists.

You should upgrade the affected component.VulDB Recent EntriesRead More