Liman 0.7 contains a cross-site request forgery vulnerability that allows attackers to manipulate user account settings without proper request validation. Attackers can craft malicious HTML forms to change user passwords or modify account information by tricking logged-in users into submitting unauthorized requests.
Metrics
Affected Vendors & Products
References
History
Fri, 30 Jan 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Salihciftci
Salihciftci liman |
|
| Vendors & Products |
Salihciftci
Salihciftci liman |
Thu, 29 Jan 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 29 Jan 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Liman 0.7 contains a cross-site request forgery vulnerability that allows attackers to manipulate user account settings without proper request validation. Attackers can craft malicious HTML forms to change user passwords or modify account information by tricking logged-in users into submitting unauthorized requests. | |
| Title | Liman 0.7 - Cross-Site Request Forgery (Change Password) | |
| Weaknesses | CWE-565 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-01-29T14:28:29.695Z
Updated: 2026-01-29T16:48:41.228Z
Reserved: 2026-01-27T15:47:08.001Z
Link: CVE-2020-37007
Updated: 2026-01-29T16:44:03.763Z
Status : Awaiting Analysis
Published: 2026-01-29T15:16:07.613
Modified: 2026-01-29T17:16:10.770
Link: CVE-2020-37007
No data.