PT-2026-32982 · Dnn · Dnn

Published

2026-04-10

·

Updated

2026-04-18

·

CVE-2026-40306

CVSS v4.0

6.9

Medium

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions DNN versions 10.x.x through 10.2.1
Description All new installations of the open-source web content management platform (CMS) in the Microsoft ecosystem are configured with the same Host GUID. This issue does not affect upgrades from version 9.x.x.
Recommendations Update to version 10.2.2.

Fix

Use of Insufficiently Random Values

Weakness Enumeration

Related Identifiers

CVE-2026-40306
GHSA-2RHW-GW3F-477J

Affected Products

Dnn