8.8
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Description
Cross-Site Request Forgery (CSRF) vulnerability in codeworkweb CWW Companion cww-companion allows Cross Site Request Forgery.This issue affects CWW Companion: from n/a through <= 1.3.2.
AI Analysis
Cross-Site Request Forgery (CSRF) vulnerability in CWW Companion plugin
Basic Information
ID
CVE-2025-67473
Source
Patchstack
Published
Dec 9, 2025 at 14:13
Modified
Dec 11, 2025 at 19:15
Affected Product
Vendor
codeworkweb
Product
CWW Companion
Version
n/a
Affected Versions
codeworkweb CWW Companion n/a
CWE Classification
AI Assessment
AI Score
8.8 / 10
AI Severity
High
Vendor
codeworkweb
Product
CWW Companion
Version
<= 1.3.2