CVE-2026-93531: gedelumbung HospitalManagement cross-site request forgery
A weakness has been identified in gedelumbung HospitalManagement up to c2d45543789a3887067d3915f69d44cfc2cf76a8. This vulnerability affects unknown code. This manipulation causes cross-site request forgery. The attack may be initiated remotely. The exploit has been made available to the public and could be used for attacks. This product uses a rolling release model to deliver continuous updates. As a result, specific version information for affected or updated releases is not available. The project was informed of the problem early through an issue report but has not responded yet.
Affected Software
Event History
Frequently Asked Questions
Who is exposed to this issue?
Deployments of gedelumbung HospitalManagement are potentially affected through commit c2d45543789a3887067d3915f69d44cfc2cf76a8. Because the affected code is unknown and the project uses rolling releases, a precise affected-version boundary is not available.
What does an attacker need to exploit it?
The attack can be initiated remotely and requires user interaction. No attacker privileges are required, and public exploit material is available.
Is a fix available?
The project was notified through an issue report but had not responded at the time of publication. No fixed release or updated commit is identified in the available information.