Gibbon before 29.0.00 allows CSRF.
References
Configurations
History
18 Jul 2025, 13:04
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:gibbonedu:gibbon:*:*:*:*:*:*:*:* | |
First Time |
Gibbonedu
Gibbonedu gibbon |
|
References | () https://github.com/GibbonEdu/core/blob/be891ab97b058a933b68354559457c9e310c13b8/modules/Timetable%20Admin/tt_delete.php#L24 - Product | |
References | () https://github.com/GibbonEdu/core/releases/tag/v29.0.00 - Release Notes |
28 May 2025, 15:01
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
27 May 2025, 04:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-27 04:15
Updated : 2025-07-18 13:04
NVD link : CVE-2025-26211
Mitre link : CVE-2025-26211
CVE.ORG link : CVE-2025-26211
JSON object : View
Products Affected
gibbonedu
- gibbon
CWE
CWE-352
Cross-Site Request Forgery (CSRF)