cve/2023/CVE-2023-52555.md
2024-05-25 21:48:12 +02:00

569 B

CVE-2023-52555

Description

In mongo-express 1.0.2, /admin allows CSRF, as demonstrated by deletion of a Collection.

POC

Reference

Github

No PoCs found on GitHub currently.