CVE-2022-0088: Cross-Site Request Forgery (CSRF) in yourls/yourls
Published Apr 3, 2022
·Updated
Cross-Site Request Forgery (CSRF) in GitHub repository yourls/yourls prior to 1.8.3.
Affected Software
1 affected component
Yourls Yourls<1.8.3
Remediation
Event History
Apr 3, 2022
CVE Published
via MITRE·08:50 AM
Data Sourced
via MITRE·08:50 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Dec 2, 2025
Exploit Published
12:00 AM
Known Exploited
07:13 PM
Frequently Asked Questions
1
What is the vulnerability ID for this CSRF vulnerability?
The vulnerability ID for this CSRF vulnerability is CVE-2022-0088.
2
What is the severity of CVE-2022-0088?
The severity of CVE-2022-0088 is high with a severity value of 7.4.
3
Which software versions are affected by CVE-2022-0088?
The software versions affected by CVE-2022-0088 include Yourls prior to version 1.8.3.
4
How can I fix CVE-2022-0088?
To fix CVE-2022-0088, update Yourls to version 1.8.3 or later.
5
Where can I find more information about CVE-2022-0088?
You can find more information about CVE-2022-0088 at the following references: [GitHub commit](https://github.com/yourls/yourls/commit/1de256d8694b0ec7d4df2ac1d5976d4055e09d59), [Huntr.dev bounty](https://huntr.dev/bounties/d01f0726-1a0f-4575-ae17-4b5319b11c29).