CVE Published: 11/04/2024 |
CVE Updated: 01/08/2024 |
CVE Year: 2024 Source: jpcert |
Vendor: Saturday Drive |
Product: Ninja Forms Status : PUBLISHED
CVE-2024-25572 Description
Cross-site request forgery (CSRF) vulnerability exists in Ninja Forms prior to 3.4.31. If a website administrator views a malicious page while logging in, unintended operations may be performed.