High severity8.8NVD Advisory· Published Nov 14, 2023· Updated Jun 17, 2026
CVE-2023-48020
CVE-2023-48020
Description
Dreamer CMS v4.1.3 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/task/changeStatus.
Affected products
3- Dreamer CMS/Dreamer CMSdescription
- Range: =4.1.3
- Range: =4.1.3
Patches
Vulnerability mechanics
References
1- github.com/moonsabc123/dreamer_cms/blob/main/Enable%20CSRF%20for%20Task%20Management%20Office.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.