9
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H
Description
Cross Site Request Forgery vulnerability in Dolibarr ERP & CRM v.22.0.9 allows a remote attacker to escalate privileges via the notes field in perms.php
AI Analysis
Cross Site Request Forgery vulnerability allowing remote attackers to escalate privileges
Basic Information
ID
CVE-2025-69634
Source
mitre
Published
Feb 12, 2026 at 00:00
Modified
Feb 12, 2026 at 15:49
Affected Product
Vendor
Dolibarr
Product
Dolibarr ERP & CRM
Version
22.0.9
Affected Versions
n/a n/a n/a
CWE Classification
AI Assessment
AI Score
9 / 10
AI Severity
Critical
Vendor
Dolibarr
Product
Dolibarr ERP & CRM
Version
22.0.9