CVE-2026-13537: CodeAstro Human Resource Management System cross-site request forgery
Published Jun 29, 2026
·Updated
A vulnerability was found in CodeAstro Human Resource Management System 1.0. Impacted is an unknown function. The manipulation results in cross-site request forgery. The attack may be launched remotely. The exploit has been made public and could be used.
Affected Software
1 affected component
Codeastro Human Resource Management System=1.0
Event History
Jun 29, 2026
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-13537?
The severity of CVE-2026-13537 is classified as medium with a score of 4.3.
2
What type of vulnerability is CVE-2026-13537?
CVE-2026-13537 is a cross-site request forgery (CSRF) vulnerability.
3
How do I fix CVE-2026-13537?
To fix CVE-2026-13537, ensure that CSRF protection mechanisms are implemented in the CodeAstro Human Resource Management System.
4
Can CVE-2026-13537 be exploited remotely?
Yes, CVE-2026-13537 can be exploited remotely, allowing attackers to launch attacks from a distance.
5
Is there a known exploit for CVE-2026-13537?
Yes, an exploit for CVE-2026-13537 has been made public and could potentially be used by attackers.