Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8w2f-4vqx-vpxq

Опубликовано: 20 нояб. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.8

Описание

A Cross-Site Request Forgery (CSRF) vulnerability was identified in HCL Glovius Cloud. An attacker can force a user's web browser to execute an unwanted, malicious action on a trusted site where the user is authenticated, specifically on one endpoint.

A Cross-Site Request Forgery (CSRF) vulnerability was identified in HCL Glovius Cloud. An attacker can force a user's web browser to execute an unwanted, malicious action on a trusted site where the user is authenticated, specifically on one endpoint.

EPSS

Процентиль: 2%
0.00014
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 6.8
nvd
3 месяца назад

A Cross-Site Request Forgery (CSRF) vulnerability was identified in HCL Glovius Cloud. An attacker can force a user's web browser to execute an unwanted, malicious action on a trusted site where the user is authenticated, specifically on one endpoint.

EPSS

Процентиль: 2%
0.00014
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-352