Vulnerabilities (CVE)

Filtered by vendor Sitecore Subscribe
Filtered by product Cms
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-9875 1 Sitecore 1 Cms 2019-06-03 6.5 MEDIUM 8.8 HIGH
Deserialization of Untrusted Data in the anti CSRF module in Sitecore through 9.1 allows an authenticated attacker to execute arbitrary code by sending a serialized .NET object in an HTTP POST parameter.