CVE-2023-5511: Cross-Site Request Forgery (CSRF) in snipe/snipe-it
Cross-Site Request Forgery (CSRF) in GitHub repository snipe/snipe-it prior to v.6.2.3.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2023-5511?
CVE-2023-5511 is a Cross-Site Request Forgery (CSRF) vulnerability found in the GitHub repository snipe/snipe-it prior to v.6.2.3.
How severe is CVE-2023-5511?
CVE-2023-5511 has a severity rating of 6.3, which is considered medium.
How does CVE-2023-5511 affect the snipe/snipe-it software?
CVE-2023-5511 affects snipe/snipe-it versions up to and including v6.2.2, prior to the release of v6.2.3.
How can I fix CVE-2023-5511?
To fix CVE-2023-5511, you need to upgrade snipe/snipe-it to version 6.2.3 or later.
Where can I find more information about CVE-2023-5511?
You can find more information about CVE-2023-5511 in the references provided: [GitHub commit](https://github.com/snipe/snipe-it/commit/6d55d782806c9660e9e65dc5250faacb5d0033ed), [Huntr bounty](https://huntr.dev/bounties/43206801-9862-48da-b379-e55e341d78bf), [NVD](https://nvd.nist.gov/vuln/detail/CVE-2023-5511)