CVE-2026-88421 PUBLISHED

Assigner: mitre
Reserved: 10.09.2026 Published: 25.09.2026 Updated: 25.09.2026

Incorrect access control in the BlogPage.get_entries() component of APSL puput v1.2.1 through v2.2.0 allows unauthenticated attackers to view restricted blog entries via the blog index, the tag, category, author and date archives, the sidebar widgets, or the RSS feed.

Product Status

Vendor n/a
Product n/a
Versions
  • Version n/a is affected

References

Problem Types

  • n/a text