Medium severity6.5NVD Advisory· Published Feb 15, 2022· Updated Jun 17, 2026
CVE-2021-46252
CVE-2021-46252
Description
A Cross-Site Request Forgery (CSRF) in RequirementsBypassPage.php of Scratch Wiki scratch-confirmaccount-v3 allows attackers to modify account request requirement bypasses.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Scratch Wiki/scratch-confirmaccount-v3description
- cpe:2.3:a:scratch-wiki:scratch_confirmaccount_v3:*:*:*:*:*:mediawiki:*:*Range: <2022-01-04
Patches
Vulnerability mechanics
References
2- github.com/InternationalScratchWiki/scratch-confirmaccount-v3/commit/5ed5479de0a279377aa9f64362481efb4e75d8f9nvdPatchThird Party Advisory
- github.com/InternationalScratchWiki/scratch-confirmaccount-v3/pull/155nvdPatchThird Party Advisory
News mentions
0No linked articles in our index yet.