CVE-2026-1745

A vulnerability was determined in SourceCodester Medical Certificate Generator App 1.0. This affects an unknown part. This manipulation causes cross-site request forgery. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized.
Configurations

Configuration 1 (hide)

cpe:2.3:a:oretnom23:medical_certificate_generator_app:1.0:*:*:*:*:*:*:*

History

29 Apr 2026, 01:00

Type Values Removed Values Added
Summary
  • (es) Se determinó una vulnerabilidad en la aplicación SourceCodester Medical Certificate Generator App 1.0. Esto afecta una parte desconocida. Esta manipulación causa falsificación de petición en sitios cruzados. La explotación remota del ataque es posible. El exploit ha sido divulgado públicamente y puede ser utilizado.

10 Feb 2026, 14:55

Type Values Removed Values Added
First Time Oretnom23
Oretnom23 medical Certificate Generator App
CPE cpe:2.3:a:oretnom23:medical_certificate_generator_app:1.0:*:*:*:*:*:*:*
References () https://github.com/Asim-QAZi/Cross-Site-Request-Forgery-Arbitrary-Medical-Certificate-Deletion - () https://github.com/Asim-QAZi/Cross-Site-Request-Forgery-Arbitrary-Medical-Certificate-Deletion - Exploit, Mitigation, Third Party Advisory
References () https://github.com/Asim-QAZi/Cross-Site-Request-Forgery-Arbitrary-Medical-Certificate-Deletion#proof-of-concept-csrf-exploit - () https://github.com/Asim-QAZi/Cross-Site-Request-Forgery-Arbitrary-Medical-Certificate-Deletion#proof-of-concept-csrf-exploit - Exploit
References () https://vuldb.com/?ctiid.343676 - () https://vuldb.com/?ctiid.343676 - Permissions Required, VDB Entry
References () https://vuldb.com/?id.343676 - () https://vuldb.com/?id.343676 - Third Party Advisory, VDB Entry
References () https://vuldb.com/?submit.742653 - () https://vuldb.com/?submit.742653 - Third Party Advisory, VDB Entry
References () https://www.sourcecodester.com/ - () https://www.sourcecodester.com/ - Product

02 Feb 2026, 06:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-02 06:16

Updated : 2026-04-29 01:00


NVD link : CVE-2026-1745

Mitre link : CVE-2026-1745

CVE.ORG link : CVE-2026-1745


JSON object : View

Products Affected

oretnom23

  • medical_certificate_generator_app
CWE
CWE-352

Cross-Site Request Forgery (CSRF)

CWE-862

Missing Authorization