Vulnerabilities (CVE)

Filtered by vendor Arunna Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-47754 1 Arunna 1 Arunna 2026-01-26 N/A 6.5 MEDIUM
Arunna 1.0.0 contains a cross-site request forgery vulnerability that allows attackers to manipulate user profile settings without authentication. Attackers can craft a malicious form to change user details, including passwords, email, and administrative privileges by tricking authenticated users into submitting the form.