CVE-2022-32320 Information

Description

A Cross-Site Request Forgery (CSRF) in Ferdi through 5.8.1 and Ferdium through 6.0.0-nightly.98 allows attackers to read files via an uploaded file such as a settings/preferences file.

Reference

https://gist.github.com/omriinbar-cyesec/c1179fe99725d2b828b6573c0d110c9c https://getferdi.com/ https://github.com/getferdi/ferdi

Share on: