Description
Cross Site Request Forgery (CSRF) vulnerability in Express cart v1.1.16 allows attackers to add an administrator account, add discount code or other unspecified impacts.
Remediation
References
https://github.com/mrvautin/expressCart/issues/120
Related Vulnerabilities
CVE-2022-34815 Vulnerability in maven package org.jenkins-ci.plugins:rrod
CVE-2022-46688 Vulnerability in maven package org.jenkins-ci.plugins:sonar-gerrit
CVE-2017-1000356 Vulnerability in maven package org.jenkins-ci.main:jenkins-core
CVE-2023-31999 Vulnerability in npm package @fastify/oauth2
CVE-2020-5397 Vulnerability in maven package org.springframework:spring-webflux