CVE-2026-21429

Emlog is an open source website building system. In version 2.5.23, the admin can set controls which makes users unable to edit or delete their articles after publishing them. As of time of publication, no known patched versions are available.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:emlog:emlog:2.5.23:*:*:*:pro:*:*:*

History

16 Jan 2026, 17:11

Type Values Removed Values Added
First Time Emlog emlog
Emlog
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.3
CPE cpe:2.3:a:emlog:emlog:2.5.23:*:*:*:pro:*:*:*
References () https://github.com/emlog/emlog/security/advisories/GHSA-jw5v-2g53-rx8w - () https://github.com/emlog/emlog/security/advisories/GHSA-jw5v-2g53-rx8w - Exploit, Vendor Advisory

02 Jan 2026, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-02 18:15

Updated : 2026-01-16 17:11


NVD link : CVE-2026-21429

Mitre link : CVE-2026-21429

CVE.ORG link : CVE-2026-21429


JSON object : View

Products Affected

emlog

  • emlog
CWE
CWE-862

Missing Authorization