🔓 VULNERABILITIES & CVEs
-
CVE-2026-16215 in django-jet OAuth Credential Revoke Authorization — CVSS 6.5 A security flaw has been identified in the OAuth Credential Revoke authorization mechanism of django-jet.
- detail: This vulnerability could allow unauthorized actions related to OAuth token revocation.
-
CVE-2026-16214 in django-jet Dashboard views.py Authorization — CVSS 6.3 An authorization vulnerability was identified in the Dashboard views.py component of django-jet.
- detail: This flaw may permit unauthorized access to dashboard functions.
-
CVE-2026-16212 Race Condition in django-shop Purchase Stock — CVSS 4.2 A race condition vulnerability affects the Purchase Stock inventory.py module of django-shop.
- detail: This could lead to inconsistent stock inventory states under concurrent access.
-
CVE-2026-16213 in django-blog-zinnia Protected Entry Password — CVSS 3.3 A flaw in the password entry protection of django-blog-zinnia's Protected Entry feature was found.
- detail: This may weaken password protection mechanisms.
-
CVE-2026-16218 Storage Reset Failure in devpush A storage reset failure due to improper checks was discovered in devpush's storage.py reset_storage function.
-
CVE-2026-16217 Delivery Deployment Endpoint Authorization Flaw An authorization security issue was found in the Delivery Deployment Endpoint deli.py module of adminset.
-
CVE-2026-16216 Cross-Site Request Forgery in django-jet OAuth A cross-site request forgery weakness was identified in the OAuth implementation of django-jet.