Unknown · Ray Enterprise Translation · CVE-2026-15080
**Name of the Vulnerable Software and Affected Versions**
Ray Enterprise Translation versions 0.0.0 through 4.0.4
Ray Enterprise Translation versions 4.1.0 through 4.1.4
Ray Enterprise Translation versions 11.0.0 through 11.0.4
**Description**
Cross-Site Request Forgery (CSRF) occurs when a module fails to protect state-changing administrative routes. This allows an attacker to trick a privileged user into visiting a crafted page to trigger unauthorized actions, such as updating callback settings, uploading or downloading translations, or changing translation state.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.