Medium severity6.5NVD Advisory· Published Nov 7, 2025· Updated Jun 17, 2026
CVE-2025-63716
CVE-2025-63716
Description
The SourceCodester Leads Manager Tool v1.0 is vulnerable to Cross-Site Request Forgery (CSRF) attacks that allow unauthorized state-changing operations. The application lacks CSRF protection mechanisms such as anti-CSRF tokens or same-origin verification for critical endpoints.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3= 1.0+ 1 more
- (no CPE)range: = 1.0
- (no CPE)
- cpe:2.3:a:rems:leads_manager_tool:1.0:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.