CVE-2026-104059 - Lektor 3.3.14 CSRF via Admin API Endpoints
CVE ID :CVE-2026-104059 Published : Oct. 1, 2026, 6:17 p.m. | 1 hour, 1 minute ago Description :Lektor 3.3.14 and 3.4.0b15 contains a cross-site request forgery vulnerability in the admin API blueprint that allows unauthenticated attackers to perform state-changing actions by sending...