CVE-2024-27474

Published
View on NVD ↗
CVSS v3
8.8
HIGH
CVSS v2
N/A
Affected
2
PROJECTS

Description

Leantime 3.0.6 is vulnerable to Cross Site Request Forgery (CSRF). This vulnerability allows malicious actors to perform unauthorized actions on behalf of authenticated users, specifically administrators.

Leantime is a goals focused project management system for non-project managers. Building with ADHD, Autism, and dyslexia in mind.
GitHubGitHub
9.98K
CVE-2024-27474, CVE-2024-27476, CVE-2024-27477
GitHubGitHub