VDB

CVE-2026-22251

CVE-2026-22251 PUBLISHED CVSS 5.300000190734863 MEDIUM

Weblate wlc has insecure API key configuration

EPSS 0.01% · 0.4th percentile

Risk Scores

CVSS 3.1
5.300000190734863
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:H/I:N/A:N
EPSS Score
0.01%
0.4th percentile

Affected Products

VendorProductVersions
weblatewlc0, 0
PyPIwlc0, 0
WeblateOrgwlc*, < 1.17.0

Timeline

  • Jan 7, 2026 Fix PR Merged
  • Jan 12, 2026 CVE Published
  • Jan 13, 2026 EPSS Score
  • Jan 16, 2026 EPSS Score
  • Jan 19, 2026 EPSS Score
  • Jan 22, 2026 EPSS Score
  • Jan 24, 2026 PoC Published
  • Jan 24, 2026 PoC Published
  • Jan 25, 2026 EPSS Score
  • Jan 28, 2026 EPSS Score
  • Jan 30, 2026 Security Advisory
  • Jan 31, 2026 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›