CMS
wagtail/wagtail
A Django content management system focused on flexibility and user experience
#python#django#cms#wagtail#hacktoberfest
スコア
75
/ 100
Star
20,324
Fork
4,519
Open Issue
843
サイズ
248MB
言語
Python ★
最終push
0 日前
Docker
—
採点内訳
過去CVE 20件 (やや多い)
✓直近 push: 0 日前
✓得意言語 (Python)
✓オープンissue 843件
✓大規模 (248MB)
—Docker 未対応
—10k–50k: 中級 (★20,324)
—※ 各項目の重みは「採点ルール」を参照。合計は 0 で底打ち。
過去の SecurityAdvisory (20 件)
- Improper permission handling when copying pages
- Improper restriction handling on Documents and Images API
- Improper permission handling when deleting form submissions
- Improper permission handling when viewing page history
- Improper permission handling when comparing revisions
- Improper escaping of HTML (Cross-site Scripting) in simple_translation admin interface
- Improper escaping of HTML (Cross-site Scripting) on TableBlock class attributes
- Improper permission handling on admin preview endpoints
- Regular expression denial-of-service via search query parsing
- Improper Handling of Insufficient Permissions in `wagtail.contrib.settings`
- Permission check bypass when editing a model with per-field restrictions through `wagtail.contrib.settings` or `ModelViewSet`
- Disclosure of user names via admin bulk action views
- Denial-of-service via memory exhaustion when uploading large files
- Stored XSS attack via ModelAdmin views
- Comment reply notifications sent to incorrect users
- Improper escaping of HTML ('Cross-site Scripting') in Wagtail StreamField blocks
- Improper validation of URLs ('Cross-site Scripting') in Wagtail rich text fields
- HTML injection through form field help text
- Potential timing attack on password-protected private pages
- Possible XSS attack via page revision comparison view