CVE-2026-27838 | wger-project wger up to 2.4 self.get_object authorization (GHSA-42cr-w2gr-m54q)
A vulnerability marked as problematic has been reported in wger-project wger up to 2.4. Affected by this issue is the function self.get_object. The manipulation leads to authorization bypass.
This vulnerability is uniquely identified as CVE-2026-27838. The attack is possible to be carried out remotely. No exploit exists.
To fix this issue, it is recommended to deploy a patch.