


Perceptive Security
SOC/SIEM Consultancy

A vulnerability was identified in liangliangyy DjangoBlog up to 2.1.0.0. The impacted element is an unknown function of the file owntracks/views.py of the compo…
Published:
18 April 2026 at 22:00:00
Alert date:
19 April 2026 at 21:00:40
Source:
nvd.nist.gov
Web Technologies
A vulnerability was identified in liangliangyy DjangoBlog up to version 2.1.0.0 affecting the owntracks/views.py file in the logtracks endpoint. The vulnerability involves missing authentication that can be exploited remotely. The exploit is publicly available and can be used by attackers. The vendor was contacted about the disclosure but did not respond. This appears to allow unauthenticated GPS data injection into the system.
Technical details
Mitigation steps:
Affected products:
liangliangyy DjangoBlog
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-6577
https://github.com/3em0/cve_repo/blob/main/DjangoBlog/Vuln-2-Unauthenticated-GPS-Data-Injection.md
https://vuldb.com/submit/790282
https://vuldb.com/vuln/358212
https://vuldb.com/vuln/358212/cti
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
