Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 20 May 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 20 May 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Six Apart
Six Apart movable Type Six Apart movable Type Advanced Six Apart movable Type Premium Six Apart movable Type Premium Advanced Edition |
|
| Vendors & Products |
Six Apart
Six Apart movable Type Six Apart movable Type Advanced Six Apart movable Type Premium Six Apart movable Type Premium Advanced Edition |
Wed, 20 May 2026 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Missing Authorization Allows Unintended Updates in Movable Type |
Wed, 20 May 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Missing authorization vulnerability exists in Movable Type. Under certain conditions, when a user without administrator privileges signs in to the product, unintended update processing may be executed. | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2026-05-20T13:04:04.783Z
Reserved: 2026-05-18T05:54:22.563Z
Link: CVE-2026-44392
Updated: 2026-05-20T13:03:58.713Z
Status : Deferred
Published: 2026-05-20T07:16:15.317
Modified: 2026-06-17T10:50:35.127
Link: CVE-2026-44392
No data.
OpenCVE Enrichment
Updated: 2026-05-20T10:37:56Z