PT-2025-49877 · Unknown · Ays Pro Chartify

CVE-2025-66529

·

Publicado

2025-12-09

·

Atualizado

2025-12-15

CVSS v3.1

4.3

Média

VetorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Ays Pro Chartify versions n/a through 3.6.3
Description A Cross-Site Request Forgery (CSRF) issue exists in Ays Pro Chartify chart-builder, potentially allowing attackers to perform actions on behalf of authenticated users. This occurs due to insufficient protection against forged requests.
Recommendations Versions prior to 3.6.3 are affected.

Correção

CSRF

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-66529

Produtos afetados

Ays Pro Chartify