Vulnerability Database
Blog
FAQ
Docs
CVE-2019-10642
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2019-10642
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-10642.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2019-10642
Aliases
GHSA-hwmh-9jj9-8c9c
Published
2019-04-17T19:29:00Z
Modified
2024-09-03T02:22:37.576134Z
Severity
8.8 (High)
CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS Calculator
Summary
[none]
Details
Contao 4.7 allows CSRF.
References
https://contao.org/en/news.html
https://contao.org/en/news/security-vulnerability-cve-2019-10642.html
Affected packages
Git
/
github.com/contao/contao
Affected ranges
Type
GIT
Repo
https://github.com/contao/contao
Events
Introduced
0
Unknown introduced commit / All previous commits are affected
Last affected
b4dda036c2c0fc7d17c1aa402eaacf6b5dc335fc
Affected versions
4.*
4.4.22
4.4.23
4.4.24
4.4.25
4.4.26
4.4.27
4.4.28
4.4.29
4.4.30
4.4.31
4.4.32
4.4.33
4.4.34
4.5.13
4.5.14
4.6.0
4.6.1
4.6.10
4.6.11
4.6.12
4.6.13
4.6.14
4.6.2
4.6.3
4.6.4
4.6.5
4.6.6
4.6.7
4.6.8
4.6.9
4.7.0
4.7.0-RC1
4.7.0-RC2
4.7.0-RC3
4.7.0-RC4
CVE-2019-10642 - OSV