CVE-2023-52555
EUVD-2024-091601.03.2024, 08:15
In mongo-express 1.0.2, /admin allows CSRF, as demonstrated by deletion of a Collection.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| mongo-express_project | mongo-express | 1.0.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration