Description
Cross Site Request Forgery (CSRF) vulnerability in Express cart v1.1.16 allows attackers to add an administrator account, add discount code or other unspecified impacts.
Remediation
References
https://github.com/mrvautin/expressCart/issues/120
Related Vulnerabilities
CVE-2018-5673 Vulnerability in maven package org.webjars:dojo
CVE-2021-21638 Vulnerability in maven package org.jenkins-ci.plugins:tfs
CVE-2020-2098 Vulnerability in maven package org.jenkins-ci.plugins:sounds
CVE-2023-47322 Vulnerability in maven package org.silverpeas.core:silverpeas-core-web
CVE-2019-10468 Vulnerability in maven package com.elasticbox.jenkins-ci.plugins:kubernetes-ci