CVE-2025-63716
07.11.2025, 18:15
The SourceCodester Leads Manager Tool v1.0 is vulnerable to Cross-Site Request Forgery (CSRF) attacks that allow unauthorized state-changing operations. The application lacks CSRF protection mechanisms such as anti-CSRF tokens or same-origin verification for critical endpoints.
| Vendor | Product | Version |
|---|---|---|
| rems | leads_manager_tool | 1.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration