cypherdavy/CVE-2025-29722

cypherdavy/CVE-2025-29722

Releases0
Cross Site Request Forgery (CSRF) in Commercify v1.0

CVE History

CVEPublishedCVSS v3CVSS v2
6.3 MEDIUM

A CSRF vulnerability in Commercify v1.0 allows remote attackers to perform unauthorized actions on behalf of authenticated users. The issue exists due to missing CSRF protection on sensitive endpoints.