Modified: 11/8/2023
package
PyPI / wagtail
pkg:pypi/wagtail
Modified: 6/8/2026
Modified: 11/8/2023
Modified: 6/8/2026
Modified: 11/8/2023
Modified: 11/8/2023
Modified: 11/8/2023
Modified: 6/8/2026
Modified: 11/8/2023
Modified: 6/8/2026
Modified: 5/20/2026
Modified: 5/20/2026
Modified: 5/20/2026
Modified: 5/20/2026
Modified: 5/20/2026
Cross-Site Scripting in Wagtail
Modified: 3/13/2026
Wagtail vulnerable to denial-of-service via memory exhaustion when uploading large files
Modified: 11/19/2024
Wagtail has improper permission handling on admin preview endpoints
Modified: 2/4/2026
Wagtail vulnerable to stored Cross-site Scripting attack via ModelAdmin views
Modified: 11/19/2024
Wagtail has improper permission handling when copying pages
Modified: 5/20/2026
Wagtail has improper permission handling when viewing page history
Modified: 5/20/2026
Wagtail has improper permission handling when comparing revisions
Modified: 5/20/2026
Wagtail vulnerable to disclosure of user names via admin bulk action views
Modified: 2/16/2024
Potential Observable Timing Discrepancy in Wagtail
Modified: 3/13/2026
Wagtail regular expression denial-of-service via search query parsing
Modified: 11/19/2024
Wagtail Vulnerable to Cross-site Scripting in simple_translation admin interface
Modified: 3/5/2026
Wagtail Vulnerable to Cross-site Scripting in TableBlock class attributes
Modified: 3/5/2026
Wagtail has improper restriction handling on Documents and Images API
Modified: 5/20/2026
Wagtail has improper permission handling when deleting form submissions
Modified: 5/20/2026
Possible XSS attack in Wagtail
Modified: 3/13/2026
Wagtail has permission check bypass when editing a model with per-field restrictions through `wagtail.contrib.settings` or `ModelViewSet`
Modified: 5/2/2024
Improper validation of URLs ('Cross-site Scripting') in Wagtail rich text fields
Modified: 3/13/2026
Cross-site Scripting in wagtail
Modified: 3/13/2026
Comment reply notifications sent to incorrect users
Modified: 11/19/2024
Improper Handling of Insufficient Permissions in `wagtail.contrib.settings`
Modified: 6/2/2024