Loading...
Loading...
Cross-site request forgery (CSRF) vulnerability in the CiviCRM private report module 6.x-1.x before 6.x-1.2 and 7.x-1.x before 7.x-1.3 for Drupal allows remote attackers to hijack the authentication of users for requests that delete reports via unspecified vectors.
June 15, 2015
May 6, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2015-4391
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.