VYPR
Medium severity6.5NVD Advisory· Published Nov 8, 2022· Updated Jun 17, 2026

CVE-2022-30694

CVE-2022-30694

Description

The login endpoint /FormLogin in affected web services does not apply proper origin checking.

This could allow authenticated remote attackers to track the activities of other users via a login cross-site request forgery attack.

Affected products

216

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.