PatchSiren

sakaiproject CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM sakaiproject CVE published 2026-09-15

CVE-2026-54050

CVE-2026-54050 is a medium-severity vulnerability in the Sakai Collaboration and Learning Environment (CLE). An authenticated user can delete another user's profile image and pronunciation recording without verifying ownership, disrupting workflows that rely on these artifacts. This issue is fixed in versions 23.5, 25.3, and 26.0. The vulnerability affects Sakai CLE deployments using versions prior to the [truncated]