ZeroHour

CVE-2024-27474

PoC
CVSS 3.1
8.8 high
EPSS
<1%p49
Published
()
Modified
Description

Leantime 3.0.6 is vulnerable to Cross Site Request Forgery (CSRF). This vulnerability allows malicious actors to perform unauthorized actions on behalf of authenticated users, specifically administrators.

Vendors
leantime
Products
leantime
Weakness
CWE-352
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.