CVE-2026-74791CWE-226

CVE-2026-74791

High · published August 16, 2026

CVSS v3.1
8.6
EPSS
0%
Percentile
18.8
In the wild
Unconfirmed
What it is

Scriban before 7.0.0 fails to clear the CachedTemplates dictionary when TemplateContext.Reset() is called, allowing cached templates to persist across reused contexts. Attackers can exploit request-dependent ITemplateLoader implementations to access previously authorized template content from earlier renders without triggering TemplateLoader.Load() again.

The record
Technical detail
CVSS v3.1
8.6 · HIGH
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
CVSS v4.0
9.2 · CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N
EPSS
0.00269 · 18.8th percentile
Weakness
CWE-226 · Sensitive Information in Resource Not Removed Before Reuse
Published
2026-08-16T18:16Z
References (3)
EPSS history
Timeline
  • 16 AUG 13:14Z
    Scriban before 7.0.0 Authorization Bypass via Stale Include Cache
    cvelistv5