CVE-2025-27910
10.03.2025, 22:15
tianti v2.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /user/ajax/upd/status. This vulnerability allows attackers to execute arbitrary operations via a crafted GET or POST request.
Vendor | Product | Version |
---|---|---|
tianti_project | tianti | 2.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration