CVE-2022-4867: Cross-Site Request Forgery (CSRF) in froxlor/froxlor
Published Dec 31, 2022
·Updated
Cross-Site Request Forgery (CSRF) in GitHub repository froxlor/froxlor prior to 2.0.0-beta1.
Affected Software
1 affected component
Froxlor Froxlor<=0.10.38.3
Remediation
Event History
Dec 31, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-4867?
CVE-2022-4867 is a Cross-Site Request Forgery (CSRF) vulnerability found in GitHub repository froxlor/froxlor prior to version 2.0.0-beta1.
2
What is the severity of CVE-2022-4867?
CVE-2022-4867 has a severity rating of medium, with a severity value of 4.3.
3
Which software version is affected by CVE-2022-4867?
Froxlor version 0.10.38.3 is affected by CVE-2022-4867.
4
How can I fix CVE-2022-4867?
To fix CVE-2022-4867, you should update your froxlor installation to version 2.0.0-beta1 or later.
5
Where can I find more information about CVE-2022-4867?
You can find more information about CVE-2022-4867 in the references provided: [GitHub Commit](https://github.com/froxlor/froxlor/commit/f7f356e896173558248c43f4f68612f78e73a65d) and [Huntr.dev](https://huntr.dev/bounties/c91364dd-9ead-4bf3-96e6-663a017e08fa).