GHSA-4p92-483q-rhf2Medium

Cross-Site Request Forgery (CSRF) vulnerability allows unauthorized deletion of alert commands...

Published
October 1, 2026
Last Modified
October 1, 2026

🔗 CVE IDs covered (1)

📋 Description

Cross-Site Request Forgery (CSRF) vulnerability allows unauthorized deletion of alert commands via sequential, unvalidated GET requests when an authenticated administrator visits a malicious page. This issue affects Pandora FMS: from 777 onwards.

🔗 References (3)