Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gvc8-8jhg-7556

Опубликовано: 28 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

Cross Site Request Forgery vulnerability in LifestyleStore v.1.0 allows a remote attacker to execute arbitrary cod and obtain sensitive information.

Cross Site Request Forgery vulnerability in LifestyleStore v.1.0 allows a remote attacker to execute arbitrary cod and obtain sensitive information.

EPSS

Процентиль: 15%
0.00047
Низкий

8.1 High

CVSS3

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 8.1
nvd
около 1 года назад

Cross Site Request Forgery (CSRF) vulnerability in LifestyleStore v1.0 allows a remote attacker to execute unauthorized actions on behalf of an authenticated user, potentially leading to account modifications or data compromise.

EPSS

Процентиль: 15%
0.00047
Низкий

8.1 High

CVSS3

Дефекты

CWE-352