CVE-2026-25812

HIGH WAF: Low
CVSS 8.8 Published: 2026-02-09
CWE-352

PlaciPy is a placement management system designed for educational institutions. In version 1.0.0, the application enables credentialed CORS requests but does not implement any CSRF protection mechanism.

WAF Coverage Analysis

Cross-Site Request Forgery (CSRF) Low WAF Coverage

OWASP: A01:2021 Broken Access Control

Affected Software

VendorProductVersion
prasklatechnologyplacipy1.0.0

References

Back to CVE Database