CVE-2026-4292 | Django up to 4.2.29/5.2.12/6.0.3 ModelAdmin.list_editable authorization
A vulnerability was found in Django up to 4.2.29/5.2.12/6.0.3. It has been classified as critical. This vulnerability affects the function ModelAdmin.list_editable. The manipulation leads to missing authorization.
This vulnerability is uniquely identified as CVE-2026-4292. The attack is possible to be carried out remotely. No exploit exists.
Upgrading the affected component is recommended.