First published: Thu Jan 13 2022(Updated: )
phoronix-test-suite is vulnerable to Cross-Site Request Forgery (CSRF)
Credit: security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Phoronix-media Phoronix Test Suite | <10.8.0 | |
Fedoraproject Fedora | =34 | |
Fedoraproject Fedora | =35 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-0197 is a vulnerability in phoronix-test-suite that allows Cross-Site Request Forgery (CSRF) attacks.
The severity of CVE-2022-0197 is high with a CVSS score of 8.8.
phoronix-test-suite versions up to and exclusive 10.8.0 are affected.
Update to a version of phoronix-test-suite that is not affected by the vulnerability.
You can find more information about CVE-2022-0197 at the provided references: [link1](https://github.com/phoronix-test-suite/phoronix-test-suite/commit/4f18296a1862fe54a4c58701a1f5ec6bd62a4d94), [link2](https://huntr.dev/bounties/5abb7915-32f4-4fb1-afa7-bb6d8c4c5ad2), [link3](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/57V2CSFU5MKWKL6RJUKMXSD4PCRFTMMQ/)