GHSA-4q74-w4p3-c8cxLowCVSS 4.3
A security vulnerability has been detected in RackTables up to 0.22.0...
🔗 CVE IDs covered (1)
📋 Description
A security vulnerability has been detected in RackTables up to 0.22.0/e5fff9f8aab339798ed47e8c6d7d977ed97a82bd. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery. The attack is possible to be carried out remotely. The exploit has been disclosed publicly and may be used. The project maintainer confirms: "[I]t seems plausible, in that RackTables does not at this time have any CSRF prevention. You may assign a CVE ID to this, but there is no guarantee it will be handled in urgent, or even timely, manner, or at all."
🔗 References (8)
- https://nvd.nist.gov/vuln/detail/CVE-2026-18819
- https://github.com/fa1c4/security-advisories/blob/main/RackTables/RackTables_CSRF_report.md
- https://github.com/fa1c4/security-advisories/tree/main/RackTables/PoC
- https://vuldb.com/cve/CVE-2026-18819
- https://vuldb.com/submit/857970
- https://vuldb.com/vuln/385818
- https://vuldb.com/vuln/385818/cti
- https://github.com/advisories/GHSA-4q74-w4p3-c8cx