The application was vulnerable to Cross-Site Request Forgery (CSRF) attacks, allowing an attacker to coerce users into sending malicious requests to the site to delete their account, or in rare circumstances, hijack their account and create other admin accounts.
Metrics
Affected Vendors & Products
References
History
Tue, 06 May 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: TML
Published: 2022-10-31T20:06:41.873Z
Updated: 2025-05-06T19:19:48.448Z
Reserved: 2022-09-08T00:00:00.000Z
Link: CVE-2022-40291

Updated: 2024-08-03T12:14:39.955Z

Status : Modified
Published: 2022-10-31T21:15:12.967
Modified: 2025-05-06T20:15:24.450
Link: CVE-2022-40291

No data.