ZeroHour

CVE-2023-47350

CVSS 3.1
8.8 high
EPSS
<1%p32
Published
()
Modified
Description

Cross-Site Request Forgery (CSRF) vulnerability in SwiftyEdit Content Management System prior to v1.2.0, allows remote attackers to escalate privileges via the user password update functionality.

Vendors
swiftyedit
Products
swiftyedit
Weakness
CWE-352
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.