CVE 6.9 MEDIUM

UnoPim vulnerable to CSRF on Product edit feature and creation of other types_CVE-2025-55744

6.9 / 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:P

Description

UnoPim is an open-source Product Information Management (PIM) system built on the Laravel framework. Before 0.2.1, some of the endpoints of the application is vulnerable to Cross site Request forgery (CSRF). This vulnerability is fixed in 0.2.1.

Basic Information

ID CVE-2025-55744
Source GitHub_M
Published Aug 21, 2025 at 15:51

Affected Product

Vendor unopim
Product unopim
Version < 0.2.1
Affected Versions unopim unopim < 0.2.1

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.