Vulnerabilities > CVE-2021-4015 - Unspecified vulnerability in Firefly-Iii Firefly III
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
LOW Availability impact
NONE Summary
firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)
Vulnerable Configurations
References
- https://github.com/firefly-iii/firefly-iii/commit/518b4ba5a7a56760902758ae0a2c6a392c2f4d37
- https://github.com/firefly-iii/firefly-iii/commit/518b4ba5a7a56760902758ae0a2c6a392c2f4d37
- https://huntr.dev/bounties/b698d445-602d-4701-961c-dffe6d3009b1
- https://huntr.dev/bounties/b698d445-602d-4701-961c-dffe6d3009b1