Vulnerabilities > CVE-2021-3921 - Unspecified vulnerability in Firefly-Iii Firefly III
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
LOW Availability impact
NONE Summary
firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)
Vulnerable Configurations
References
- https://github.com/firefly-iii/firefly-iii/commit/47fa9e39561a9ec9e210e4023d090a7b33381684
- https://github.com/firefly-iii/firefly-iii/commit/47fa9e39561a9ec9e210e4023d090a7b33381684
- https://huntr.dev/bounties/724d3fd5-9f04-45c4-98d6-35a7d15468f5
- https://huntr.dev/bounties/724d3fd5-9f04-45c4-98d6-35a7d15468f5