CVE-2022-3017: Cross-Site Request Forgery (CSRF) in froxlor/froxlor
Published Aug 28, 2022
·Updated
Cross-Site Request Forgery (CSRF) in GitHub repository froxlor/froxlor prior to 0.10.38.
Affected Software
1 affected component
Froxlor Froxlor<0.10.38
Remediation
Event History
Aug 28, 2022
CVE Published
via MITRE·01:50 PM
Data Sourced
via MITRE·01:50 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2022-3017?
CVE-2022-3017 is a Cross-Site Request Forgery (CSRF) vulnerability in the GitHub repository froxlor/froxlor prior to version 0.10.38.
2
How does CVE-2022-3017 affect Froxlor?
CVE-2022-3017 affects Froxlor versions prior to 0.10.38.
3
What is the severity of CVE-2022-3017?
CVE-2022-3017 has a severity value of 6.5, indicating a medium-severity vulnerability.
4
How can I fix CVE-2022-3017?
To fix CVE-2022-3017, upgrade your Froxlor installation to version 0.10.38 or later.
5
Where can I find more information about CVE-2022-3017?
You can find more information about CVE-2022-3017 at the following references: [GitHub Commit](https://github.com/froxlor/froxlor/commit/bbe82286aae21328668f24857995a67598fe978a), [Huntr Security Advisory](https://huntr.dev/bounties/5250c4b1-132b-4da6-9bd6-db36cb56bea0).