8.8
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Description
nopCommerce 4.90.0 is vulnerable to Cross Site Request Forgery (CSRF) via the Schedule Tasks functionality.
AI Analysis
Cross Site Request Forgery (CSRF) vulnerability in Schedule Tasks functionality
Basic Information
ID
CVE-2025-65593
Source
mitre
Published
Dec 16, 2025 at 00:00
Modified
Dec 17, 2025 at 14:40
Affected Product
Vendor
nopCommerce Team
Product
nopCommerce
Version
4.90.0
Affected Versions
n/a n/a n/a
CWE Classification
AI Assessment
AI Score
8.8 / 10
AI Severity
High
Vendor
nopCommerce Team
Product
nopCommerce
Version
4.90.0