Description
Cross Site Request Forgery (CSRF) vulnerability in Express cart v1.1.16 allows attackers to add an administrator account, add discount code or other unspecified impacts.
Remediation
References
https://github.com/mrvautin/expressCart/issues/120
Related Vulnerabilities
CVE-2023-50775 Vulnerability in maven package org.jenkins-ci.plugins:ec2-deployment-dashboard
CVE-2021-42228 Vulnerability in npm package kindeditor
CVE-2023-2631 Vulnerability in maven package org.jenkins-ci.plugins:codedx
CVE-2015-5318 Vulnerability in maven package org.jenkins-ci.main:jenkins-core
CVE-2023-22457 Vulnerability in maven package org.xwiki.contrib:application-ckeditor-plugins