Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8hjx-7pv7-rr27

Опубликовано: 29 июн. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

Cross Site Request Forgery vulnerability in Squidex.io Squidex CMS v.7.21.0 and before allows a remote attacker to escalate privileges via the IdentityServer account profile endpoint

Cross Site Request Forgery vulnerability in Squidex.io Squidex CMS v.7.21.0 and before allows a remote attacker to escalate privileges via the IdentityServer account profile endpoint

EPSS

Процентиль: 15%
0.0024
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 6.5
nvd
около 2 месяцев назад

Cross Site Request Forgery vulnerability in Squidex.io Squidex CMS v.7.21.0 and before allows a remote attacker to escalate privileges via the IdentityServer account profile endpoint

EPSS

Процентиль: 15%
0.0024
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-352