Description
Weblate is a web based localization tool. In versions prior to 5.15, it was possible to accept an invitation opened by a different user. Version 5.15. contains a patch. As a workaround, avoid leaving one's Weblate sessions with an invitation opened unattended.
Problem types
CWE-286: Incorrect User Management
Product status
References
github.com/...eblate/security/advisories/GHSA-m6hq-f4w9-qrjj
github.com/WeblateOrg/weblate/pull/16913
github.com/...ommit/02e904675f0608a6bbfbf9466eeccd9d022591e9
github.com/WeblateOrg/weblate/releases/tag/weblate-5.15
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.