django-cms is vulnerable to Missing Authorization
65
Medium Risk
The move_plugin admin endpoint in django CMS performs a paste when a request sets move_a_copy, resolving the source plugin from a client-supplied id without checking the requester's permission on the placeholder it is copied from. A staff user holding the Django add permission for a plugin model can copy any plugin of that type into a placeholder they control, reading content from other pages, sites, and other users' clipboards they cannot otherwise access. A contributing flaw grants every user permission on every clipboard rather than only their own, widening the disclosure. The fix adds a source-side authorization hook to both paste helpers and restricts clipboard access to its owner.
You are affected if you are using a version that falls within the vulnerable range and you have staff users who hold the Django add permission for one or more plugin models.
django-cms is vulnerable to Missing Authorization in versions 0.0.1 - 5.0.9 and 5.1.0 - 5.1.0.
Upgrade the django-cms library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant