High severity8.8NVD Advisory· Published Sep 23, 2021· Updated Jun 17, 2026
CVE-2020-19951
CVE-2020-19951
Description
A cross-site request forgery (CSRF) in /controller/pay.class.php of YzmCMS v5.5 allows attackers to access sensitive components of the application.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- YzmCMS/YzmCMSdescription
Patches
Vulnerability mechanics
References
1- github.com/yzmcms/yzmcms/issues/43nvdExploitIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.