Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-15550

Опубликовано: 29 янв. 2026
Источник: nvd
CVSS3: 5.3
EPSS Низкий

Описание

birkir prime <= 0.4.0.beta.0 contains a cross-site request forgery vulnerability in its GraphQL endpoint that allows attackers to exploit GET-based query requests. Attackers can craft malicious GET requests to trigger unauthorized actions against privileged users by manipulating GraphQL query parameters.

EPSS

Процентиль: 0%
0.00006
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 5.3
github
9 дней назад

birkir prime <= 0.4.0.beta.0 contains a cross-site request forgery vulnerability in its GraphQL endpoint that allows attackers to exploit GET-based query requests. Attackers can craft malicious GET requests to trigger unauthorized actions against privileged users by manipulating GraphQL query parameters.

EPSS

Процентиль: 0%
0.00006
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-352