bookwyrm-social bookwyrm

3 known vulnerabilities in bookwyrm-social bookwyrm, with patch priority, exploit likelihood and the news covering them.

Latest vulnerabilities

  • CVE-2026-86113 CVSS 7.1 high BookWyrm through 0.9.1 contains an authorization bypass vulnerability in the edit_readthrough function that allows authenticated users to…
  • CVE-2026-86112 CVSS 5.3 medium BookWyrm through 0.9.1 fails to validate user visibility permissions in the Favorite and Unfavorite views, allowing authenticated…
  • CVE-2026-86111 CVSS 7.1 high BookWyrm through 0.9.1 fails to validate user visibility permissions in the status edit endpoint, allowing authenticated attackers to read…