CVE

CVE-2019-13183

CVE-2019-13183

Flarum before 0.1.0-beta.9 allows CSRF against all POST endpoints, as demonstrated by changing admin settings.

Source: CVE-2019-13183

Exit mobile version