First published: Sun Aug 11 2019(Updated: )
Bagisto 0.1.5 allows CSRF under /admin URIs.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Webkul Bagisto | =0.1.5 | |
composer/bagisto/bagisto | <0.1.5 | 0.1.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2019-14933.
The severity of CVE-2019-14933 is high with a severity value of 8.8.
Bagisto 0.1.5 is affected by CVE-2019-14933.
CSRF attacks can occur under the /admin URIs of Bagisto 0.1.5.
Yes, you can find references for CVE-2019-14933 at the following links: [1](https://forums.bagisto.com/category/1/announcements), [2](https://github.com/bagisto/bagisto/issues/750).