Количество 2
Количество 2
CVE-2025-60645
3 месяца назад
A Cross-Site Request Forgery (CSRF) in xxl-api v1.3.0 allows attackers to arbitrarily add users to the management module via a crafted GET request.
CVSS3: 6.5
EPSS: Низкий
GHSA-wjh9-7v88-c76j
3 месяца назад
A Cross-Site Request Forgery (CSRF) in xxl-api v1.3.0 allows attackers to arbitrarily add users to the management module via a crafted GET request.
CVSS3: 6.5
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-60645 A Cross-Site Request Forgery (CSRF) in xxl-api v1.3.0 allows attackers to arbitrarily add users to the management module via a crafted GET request. | CVSS3: 6.5 | 0% Низкий | 3 месяца назад | |
GHSA-wjh9-7v88-c76j A Cross-Site Request Forgery (CSRF) in xxl-api v1.3.0 allows attackers to arbitrarily add users to the management module via a crafted GET request. | CVSS3: 6.5 | 0% Низкий | 3 месяца назад |
Уязвимостей на страницу
20