CVE-2019-14933: CSRF
Published Aug 11, 2019
·Updated
Bagisto 0.1.5 allows CSRF under /admin URIs.
Other sources
Bagisto before 0.1.5 allows CSRF under /admin URIs.
— GitHub
Affected Software
2 affected componentsFixes available
Webkul Bagisto=0.1.5
composer/bagisto/bagisto<0.1.5
0.1.5
Event History
Aug 11, 2019
CVE Published
via MITRE·08:56 PM
Data Sourced
via MITRE·08:56 PM
Description
May 24, 2022
Advisory Published
via GitHub·04:53 PM
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-14933.
2
What is the severity of CVE-2019-14933?
The severity of CVE-2019-14933 is high with a severity value of 8.8.
3
What software version is affected by CVE-2019-14933?
Bagisto 0.1.5 is affected by CVE-2019-14933.
4
How can CSRF attacks occur with Bagisto 0.1.5?
CSRF attacks can occur under the /admin URIs of Bagisto 0.1.5.
5
Are there any references for CVE-2019-14933?
Yes, you can find references for CVE-2019-14933 at the following links: [1](https://forums.bagisto.com/category/1/announcements), [2](https://github.com/bagisto/bagisto/issues/750).