Medium severity6.1NVD Advisory· Published Mar 13, 2024· Updated Jun 17, 2026
CVE-2024-28680
CVE-2024-28680
Description
DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /dede/diy_add.php.
Affected products
3Patches
Vulnerability mechanics
References
1- github.com/777erp/cms/blob/main/11.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.