CVE-2022-40291 Information

Description

The application was vulnerable to Cross-Site Request Forgery (CSRF) attacks allowing an attacker to coerce users into sending malicious requests to the site to delete their account or in rare circumstances hijack their account and create other admin accounts.

Reference

https://www.themissinglink.com.au/security-advisories/cve-2022-40291

Share on: