Description
Cross Site Request Forgery (CSRF) vulnerability in Express cart v1.1.16 allows attackers to add an administrator account, add discount code or other unspecified impacts.
Remediation
References
https://github.com/mrvautin/expressCart/issues/120
Related Vulnerabilities
CVE-2020-2280 Vulnerability in maven package io.jenkins.plugins:warnings-ng
CVE-2022-34209 Vulnerability in maven package org.jenkins-ci.plugins:threadfix
CVE-2013-7259 Vulnerability in maven package org.neo4j.app:neo4j-server
CVE-2022-3978 Vulnerability in npm package nodebb
CVE-2017-12631 Vulnerability in maven package org.apache.cxf.fediz:fediz-spring3