
CVE-2026-34393 Weblate is a web based localization tool. In versions prior to 5.17, the user patching API endpoint didn't properly limit the scope of edits. This issue has been fixe… https://www.cve.org/CVERecord?id=CVE-2026-34393
Post summary
CVE-2026-34393 affects older Weblate versions; the issue is access‑control via the patching API, and it has been fixed in version 5.17.
