Cross-Site Request Forgery in Code-Projects Laundry System by Code-Projects
CVE-2025-5766
Key Information:
- Vendor
Code-projects
- Status
- Vendor
- CVE Published:
- 6 June 2025
Badges
What is CVE-2025-5766?
A vulnerability has been identified in the Laundry System by Code-Projects, specifically version 1.0, which is susceptible to Cross-Site Request Forgery (CSRF). This vulnerability allows an attacker to exploit a flaw in the system by initiating unauthorized actions on behalf of a legitimate user without their consent. The potential for remote exploitation raises significant security concerns, as it could facilitate unauthorized access or manipulation of user data. Users of the affected product are strongly advised to implement security measures to mitigate the risks associated with this vulnerability.
Affected Version(s)
Laundry System 1.0
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- 🟡
Public PoC available
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved