CSRF Vulnerability in VMware Harbor Container Registry by Cloud Native Computing Foundation
CVE-2019-19025
8.8HIGH
What is CVE-2019-19025?
The VMware Harbor Container Registry, developed by the Cloud Native Computing Foundation, is susceptible to a Cross-Site Request Forgery (CSRF) vulnerability in versions prior to 1.8.6 and 1.9.3. This flaw can allow an attacker to perform unauthorized actions on behalf of an authenticated user, potentially compromising the integrity and security of the affected systems. Users of the impacted versions are encouraged to upgrade to the latest versions to mitigate this risk. For detailed information, consult the security advisories on GitHub and VMware's official security pages.