CVE-2020-28191

HIGH WAF: Low
CVSS 8.8 Published: 2022-12-26
CWE-352 CWE-352

The console in Togglz before 2.9.4 allows CSRF.

WAF Coverage Analysis

Cross-Site Request Forgery (CSRF) Low WAF Coverage

OWASP: A01:2021 Broken Access Control

Cross-Site Request Forgery (CSRF) Low WAF Coverage

OWASP: A01:2021 Broken Access Control

Affected Software

VendorProductVersion
togglztogglzup to 2.9.4

References

Back to CVE Database