CVE-2023-27889
10.05.2023, 06:15
Cross-site request forgery (CSRF) vulnerability in LIQUID SPEECH BALLOON versions prior to 1.2 allows a remote unauthenticated attacker to hijack the authentication of a user and to perform unintended operations by having a user view a malicious page.
Vendor | Product | Version |
---|---|---|
lqd | liquid_speech_balloon | 𝑥 < 1.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration