Known Vulnerabilities for Csrf-protection by Fastify
Listed below are 1 of the newest known vulnerabilities associated with "Csrf-protection" by "Fastify".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-49433 json | The DeepAI endpoint 'https://api.deepai.org/change_user_email' accepts POST requests without any CSRF protection. If an attac... | Not Provided | 2026-06-01 | 2026-06-01 |
| CVE-2026-44364 json | MISP modules are autonomous modules that can be used to extend MISP for new services. In 3.0.7 and earlier, a Cross-Site Requ... | Not Provided | 2026-05-13 | 2026-05-13 |
| CVE-2026-42961 json | ELECOM wireless LAN access point devices implement CSRF protection mechanism, but with inadequate handling of CSRF tokens. If... | Not Provided | 2026-05-13 | 2026-05-13 |
| CVE-2026-42286 json | Emlog is an open source website building system. Prior to version 2.6.11, missing CSRF protection in critical admin functions... | Not Provided | 2026-05-08 | 2026-05-12 |
| CVE-2026-41656 json | Admidio is an open-source user management solution. Prior to version 5.0.9, the add mode in modules/documents-files.php accep... | Not Provided | 2026-05-07 | 2026-05-07 |
| CVE-2026-41425 json | Authlib is a Python library which builds OAuth and OpenID Connect servers. Prior to 1.6.11, there is no CSRF protection on th... | Not Provided | 2026-04-24 | 2026-04-27 |
| CVE-2026-41255 json | CKAN is an open-source DMS (data management system) for powering data hubs and data portals. Prior to 2.10.10 and 2.11.5, Acc... | Not Provided | 2026-05-13 | 2026-05-14 |
| CVE-2026-40471 json | hackage-server lacked Cross-Site Request Forgery (CSRF) protection across its endpoints. Scripts on foreign sites could trigg... | Not Provided | 2026-04-23 | 2026-04-23 |
| CVE-2026-40458 json | PAC4J is vulnerable to Cross-Site Request Forgery (CSRF). A malicious attacker can craft a specially designed website which, ... | Not Provided | 2026-04-17 | 2026-04-17 |
| CVE-2026-39848 json | Dockyard is a Docker container management app. Prior to 1.1.0, Docker container start and stop operations are performed throu... | Not Provided | 2026-04-09 | 2026-04-10 |