← Back

CVE-2024-27474

nvd nist
Published: Apr 10, 2024Modified: Jun 17, 2026

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

Leantime 3.0.6 is vulnerable to Cross Site Request Forgery (CSRF). This vulnerability allows malicious actors to perform unauthorized actions on behalf of authenticated users, specifically administrators.

Affected (1)

Products: Leantime: Leantime
1 product
Leantime
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 3.0.6

Timeline

No history available yet.