
CVE-2026-42286 Emlog is an open source website building system. Prior to version 2.6.11, missing CSRF protection in critical admin functions allows attackers to trick authenticated … https://www.cve.org/CVERecord?id=CVE-2026-42286
Post summary
The text reports that Emlog’s pre‑2.6.11 versions suffer from a CSRF flaw in admin functions, noting that the issue is resolved in version 2.6.11.

