CVE-2025-29722

A CSRF vulnerability in Commercify v1.0 allows remote attackers to perform unauthorized actions on behalf of authenticated users. The issue exists due to missing CSRF protection on sensitive endpoints.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:yassmittal:commercify:1.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-04-17 18:15

Updated : 2025-04-23 18:49


NVD link : CVE-2025-29722

Mitre link : CVE-2025-29722

CVE.ORG link : CVE-2025-29722


JSON object : View

Products Affected

yassmittal

  • commercify
CWE
CWE-352

Cross-Site Request Forgery (CSRF)