Beta

Report

Smart Forms <= 2.5.15 is vulnerable to Cross-Site Request Forgery (CSRF) vulnerability

Unauthenticated
Published
2019-03-12

Cross-site request forgery (CSRF) vulnerability in Smart Forms 2.6.15 and earlier allows remote attackers to hijack the authentication of administrators via a specially crafted page.

CVSS

Score:8.8

Severity:High

Version: 2.5.15

There is a patch available in v2.6.16 and we strongly recommend you update to this version as soon as possible.