** DISPUTED ** Cross-Site Request... CVE-2024-22859

- AV AC AU C I A
发布: 2024-02-01
修订: 2024-04-11

** DISPUTED ** Cross-Site Request Forgery (CSRF) vulnerability in livewire before v3.0.4, allows remote attackers to execute arbitrary code getCsrfToken function. NOTE: the vendor disputes this because the 5d88731 commit fixes a usability problem (HTTP 419 status codes for legitimate client activity), not a security problem.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息