Vulnerabilities (CVE)

Filtered by vendor Civicrm Subscribe
Filtered by product Civicrm
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-36389 1 Civicrm 1 Civicrm 2021-06-22 4.3 MEDIUM 4.3 MEDIUM
In CiviCRM before 5.28.1 and CiviCRM ESR before 5.27.5 ESR, the CKEditor configuration form allows CSRF.