SEPTEMBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-16216

MEDIUM · CVSS 4.3 EPSS 0.16% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-07-19 · Last synced 2026-08-18

CyberRota Analysis

AI-Generated

A vulnerability exists in the OAuth Handler of geex-arts django-jet versions up to 1.0.8, allowing for potential cross-site request forgery (CSRF) attacks that can be executed remotely. This weakness poses a risk to applications utilizing this component, particularly those that handle sensitive user data or transactions. Organizations using this library should prioritize patching or mitigating this vulnerability to protect against potential exploitation.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-16216
Severity
MEDIUM
CVSS
4.3
EPSS
0.16%

Original NVD Description

A weakness has been identified in geex-arts django-jet up to 1.0.8. Affected is an unknown function of the component OAuth Handler. Executing a manipulation can lead to cross-site request forgery. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks. The project was informed of the problem early through an issue report but has not responded yet.