CVE-2026-53698: Medium severity Silverpeas Silverpeas vulnerability
Silverpeas through 6.4.6 mishandles the "Personal space" feature that is selected when no componentId is set.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Require a non-empty componentId be provided; do not allow selection of the 'Personal space' option when componentId is not set.
Silverpeas 'Personal space' feature componentId required = true - Compensating control
Disable or restrict access to the 'Personal space' feature (the option selected when no componentId is set) until an official vendor fix is available; limit use to trusted administrators or internal networks.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-53698?
The severity of CVE-2026-53698 is medium with a score of 6.5.
What risks are associated with CVE-2026-53698?
CVE-2026-53698 poses a risk level of 38, indicating potential vulnerabilities in handling the 'Personal space' feature.
How do I fix CVE-2026-53698?
To fix CVE-2026-53698, update Silverpeas to version 6.4.6 or later, which addresses the mishandling issue.
What kind of vulnerability is CVE-2026-53698?
CVE-2026-53698 is a vulnerability related to improper handling of the 'Personal space' feature in Silverpeas.
When was CVE-2026-53698 published?
CVE-2026-53698 was published on June 10, 2026.