Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-3g2f-4rjg-9385 | Weblate leaks information via screenshots |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 14 Jan 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 14 Jan 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Weblate is a web based localization tool. Prior to 5.15.2, the screenshot images were served directly by the HTTP server without proper access control. This could allow an unauthenticated user to access screenshots after guessing their filename. This vulnerability is fixed in 5.15.2. | |
| Title | Weblate leaks information via screenshots | |
| Weaknesses | CWE-284 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-01-14T16:58:35.235Z
Reserved: 2026-01-05T17:24:36.929Z
Link: CVE-2026-21889
Updated: 2026-01-14T16:58:31.320Z
Status : Received
Published: 2026-01-14T17:16:07.940
Modified: 2026-01-14T17:16:07.940
Link: CVE-2026-21889
No data.
OpenCVE Enrichment
No data.
Github GHSA