CVE-2026-25517 | Wagtail up to 6.3.5/7.0.3/7.1.2/7.2.1/7.3rc1 Preview Endpoint authorization (GHSA-4qvv-g3vr-m348)
A vulnerability described as problematic has been identified in Wagtail up to 6.3.5/7.0.3/7.1.2/7.2.1/7.3rc1. Impacted is an unknown function of the component Preview Endpoint. Such manipulation leads to missing authorization.
This vulnerability is documented as CVE-2026-25517. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is recommended.