Vulnerabilities > Usvn > Usvn > 1.0.9

DATE CVE VULNERABILITY TITLE RISK
2020-09-01 CVE-2020-25070 Cross-Site Request Forgery (CSRF) vulnerability in Usvn
USVN (aka User-friendly SVN) before 1.0.10 allows CSRF, related to the lack of the SameSite Strict feature.
network
usvn CWE-352
6.8
2020-09-01 CVE-2020-25069 Unspecified vulnerability in Usvn
USVN (aka User-friendly SVN) before 1.0.10 allows attackers to execute arbitrary code in the commit view.
network
low complexity
usvn
7.5