Medium severity5.4NVD Advisory· Published Aug 24, 2021· Updated Jun 17, 2026
CVE-2021-23431
CVE-2021-23431
Description
The package joplin before 2.3.2 are vulnerable to Cross-site Request Forgery (CSRF) due to missing CSRF checks in various forms.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
joplinnpm | < 2.3.2 | 2.3.2 |
Affected products
3Patches
Vulnerability mechanics
References
4- github.com/laurent22/joplin/commit/19b45de2981c09f6f387498ef96d32b4811eba5envdPatchThird Party AdvisoryWEB
- snyk.io/vuln/SNYK-JS-JOPLIN-1325537nvdPatchThird Party AdvisoryWEB
- github.com/advisories/GHSA-gjwp-7v3g-99pjghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2021-23431ghsaADVISORY
News mentions
0No linked articles in our index yet.