Description
Cross Site Request Forgery (CSRF) vulnerability in Express cart v1.1.16 allows attackers to add an administrator account, add discount code or other unspecified impacts.
Remediation
References
https://github.com/mrvautin/expressCart/issues/120
Related Vulnerabilities
CVE-2021-21655 Vulnerability in maven package org.jenkins-ci.plugins:p4
CVE-2017-1000085 Vulnerability in maven package org.jenkins-ci.plugins:subversion
CVE-2014-4671 Vulnerability in npm package hapi
CVE-2020-2196 Vulnerability in maven package org.jenkins-ci.plugins:selenium
CVE-2022-41927 Vulnerability in maven package org.xwiki.platform:xwiki-platform-tag-ui