Lucene search

K
osvGoogleOSV:GHSA-4R8C-PJ7X-M5JX
HistoryMay 24, 2022 - 5:19 p.m.

Comments plugin Cross-Site Request Forgery (CSRF)

2022-05-2417:19:26
Google
osv.dev
4
craft cms
comments plugin
csrf
cross-site request forgery
security
integrity

AI Score

7

Confidence

High

EPSS

0.001

Percentile

21.6%

An issue was discovered in the Comments plugin before 1.5.5 for Craft CMS. CSRF affects comment integrity.

AI Score

7

Confidence

High

EPSS

0.001

Percentile

21.6%

Related for OSV:GHSA-4R8C-PJ7X-M5JX