Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2022-27340: vul/Mcms跨站请求伪造.docx at main · UDKI11/vul

MCMS v5.2.7 contains a Cross-Site Request Forgery (CSRF) via /role/saveOrUpdateRole.do. This vulnerability allows attackers to escalate privileges and modify data.

CVE
#csrf#vulnerability

Permalink

main

Switch branches/tags

Go to file

  • Go to file

  • Copy path

  • Copy permalink

Cannot retrieve contributors at this time

5.15 MB

Download

  • Open with Desktop
  • Download

View raw

(Sorry about that, but we can’t show files that are this big right now.)

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907