Cross Site Request Forgery Vulnerability in Bagisto Before v.1.5.1 Allows Arbitrary Code Execution via Crafted HTML Script
CVE-2023-36237

Currently unrated

Key Information:

Vendor

Bagisto

Status
Vendor
CVE Published:
26 February 2024

What is CVE-2023-36237?

A Cross Site Request Forgery (CSRF) vulnerability exists in Bagisto, which could allow an attacker to execute arbitrary code through the use of crafted HTML scripts. This flaw affects versions prior to 1.5.1 and poses significant security risks to users and applications utilizing the platform. It is essential for organizations using Bagisto to ensure they are on the latest version and implement appropriate security measures to mitigate potential exploits.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.