Lucene search

K
osvGoogleOSV:GHSA-5V5Q-3M7M-97J7
HistoryMay 24, 2022 - 5:18 p.m.

Image Resizer Cross-Site Request Forgery (CSRF)

2022-05-2417:18:39
Google
osv.dev
3
image resizer
csrf
craft cms
log-clear controller

AI Score

7

Confidence

High

EPSS

0.001

Percentile

31.5%

An issue was discovered in the Image Resizer plugin before 2.0.9 for Craft CMS. There are CSRF issues with the log-clear controller action.

AI Score

7

Confidence

High

EPSS

0.001

Percentile

31.5%

Related for OSV:GHSA-5V5Q-3M7M-97J7