CVE-2026-40869 | Decidim up to 0.30.4/0.31.0 privileges assignment (GHSA-w5xj-99cg-rccm)
A vulnerability classified as problematic has been found in Decidim up to 0.30.4/0.31.0. This vulnerability affects unknown code. Performing a manipulation results in incorrect privilege assignment.
This vulnerability is identified as CVE-2026-40869. The attack can be initiated remotely. There is not any exploit available.
It is recommended to upgrade the affected component.