MEDIUM6.6
PYSEC-2026-839
Lin CMS vulnerable to Improper Authentication
Details
An authentication bypass in Lin-CMS v0.2.1 allows attackers to escalate privileges to Super Administrator.
Are you affected?
Enter the version of the package you're using.
Affected packages
PyPI/lin-cms
Introduced in:
0No fixed version published yet for lin-cms (pip). Pin to a known-safe version or switch to an alternative.
References
- https://nvd.nist.gov/vuln/detail/CVE-2022-44244[ADVISORY]
- https://gist.github.com/cai-niao98/58c97899695488bd73a73d56adf44c4c[WEB]
- https://github.com/TaleLin/lin-cms-flask[PACKAGE]
- https://github.com/cai-niao98/lin-cms[WEB]
- https://pypi.org/project/lin-cms[PACKAGE]
- https://github.com/advisories/GHSA-4vrc-q7m6-vq7w[ADVISORY]