Vulnerabilities
Latest: CVE-2026-22194 - GestSup <= 3.2.56 csrf allows privileged actions
CVE ID : CVE-2026-22194 Published : Jan. 9, 2026, 4:17 p.m. | 1 hour, 6 minutes ago Description : GestSup versions up to and including 3.2.56 contain a cross-site request forgery (CSRF) vulnerability where the application does not verify the authenticity of client requests. An attacker can induce a logged-in user to submit crafted requests that perform actions with the victim's privileges. This can be exploited to create privileged accounts by targeting the administrative user creation endpoint. Severity: 8.9 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Source: Telegram CVE Monitor