### [CVE-2021-28070](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-28070) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa%20&color=brightgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brightgreen) ### Description Cross Site Request Forgery (CSRF) vulnerability exist in PopojiCMS 2.0.1 in po-admin/route.php?mod=user&act=multidelete. ### POC #### Reference - https://github.com/PopojiCMS/PopojiCMS/issues/31 #### Github No PoCs found on GitHub currently.