### [CVE-2021-3858](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3858) ![](https://img.shields.io/static/v1?label=Product&message=snipe%2Fsnipe-it&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=%3C%205.3.0%20&color=brighgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-352%20Cross-Site%20Request%20Forgery%20(CSRF)&color=brighgreen) ### Description snipe-it is vulnerable to Cross-Site Request Forgery (CSRF) ### POC #### Reference - https://huntr.dev/bounties/a2fac2eb-100d-45b1-9ac7-71847c2f2b6b #### Github No PoCs found on GitHub currently.