Access Control Vulnerability in Emlog Website Building System
CVE-2026-21429
2LOW
What is CVE-2026-21429?
Emlog, an open source website building system, has an identified access control vulnerability in version 2.5.23. This flaw allows administrators to enforce settings that restrict users from editing or deleting their articles after they have been published. As it stands, there are no patched versions available to address this issue, leaving users at risk. Organizations using Emlog should review their security policies and consider implementing additional safeguards until a fix is released.
Affected Version(s)
emlog = 2.5.23
