World Wires · story 24869 · official · 1 source(s)

Critical CVE-2026-104070 vulnerability found in SPIP Crayons plugin

A missing authorization vulnerability in the Crayons plugin for SPIP before 3.5.0 allows unauthenticated attackers to modify arbitrary object fields.

Open in the desk

Coverage

What this site indexes