CVE-2026-18275: Authorization Bypass Through User-Controlled Key in eScriptorium
Authorization bypass in the process and annotation taxonomy serializers in Scripta eScriptorium through 26.04.1 allows a remote authenticated user to run segmentation and transcription against other users' document parts, overwriting their content, via part primary keys supplied to a many=True related field whose queryset restriction was applied to the ManyRelatedField instead of its childrelation and therefore had no effect
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 26.04.2 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 1.0.1 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 0.13.9
Event History
Frequently Asked Questions
What is the severity of CVE-2026-18275?
The severity of CVE-2026-18275 is rated as medium with a score of 6.5.
What does CVE-2026-18275 involve?
CVE-2026-18275 involves an authorization bypass in Scripta eScriptorium that allows authenticated users to alter other users' document parts.
Who is affected by CVE-2026-18275?
CVE-2026-18275 affects users of Scripta eScriptorium version 26.04.1.
How do I fix CVE-2026-18275?
To fix CVE-2026-18275, update to the latest version of Scripta eScriptorium that addresses this vulnerability.
What are the implications of CVE-2026-18275?
The implications of CVE-2026-18275 include the potential for data manipulation, as it allows users to overwrite others' content.