Miggo Logo

GHSA-92xh-6x7v-4rmq: Leantime allows Cross-Site Request Forgery (CSRF)

N/A

CVSS Score

Basic Information

CVE ID
-
EPSS Score
-
Published
2/21/2025
Updated
2/21/2025
KEV Status
No
Technology
TechnologyPHP

Technical Details

CVSS Vector
-
Package NameEcosystemVulnerable VersionsFirst Patched Version
leantime/leantimecomposer< 3.1.23.1.2

Vulnerability Intelligence
Miggo AIMiggo AI

Miggo AIRoot Cause Analysis:
In progress

WAF Protection Rules

WAF Rule

***SR*** ### Summ*ry * *ross-sit* r*qu*st *or**ry vuln*r**ility *llows * r*mot* **tor to *r**t* *n ***ount wit* Own*r privil***s. *y lurin* *n Own*r or **ministr*tor into *li*kin* * *utton on *n *tt**k*r-*ontroll** w**sit*, * r*qu*st will ** issu**,

Reasoning

No *n*lysis *v*il**l*