CVE intelligence

CVE-2026-86254

wger versions through master contain an incomplete authorization bypass in wger/core/views/user.py where three views retain the original gym

Published 2026-09-06 · CVSS

medium

NIST record