CSRF Vulnerability in Admidio Affects Category Report Configuration
CVE-2026-69093
7.1HIGH
What is CVE-2026-69093?
A CSRF vulnerability exists in Admidio versions prior to 5.0.11 that affects the category-report module. It fails to validate the adm_csrf_token in preferences.php, allowing an attacker to deceive an authenticated administrator into visiting a specially crafted URL. This can lead to unauthorized deletion or duplication of Category Report configurations, compromising the integrity and availability of those settings.
Affected Version(s)
admidio 0 < 5.0.11
admidio 5.0.11
