Liman 0.7 contains a cross-site request forgery vulnerability that allows attackers to manipulate user account settings without proper request validation. Attackers can craft malicious HTML forms to change user passwords or modify account information by tricking logged-in users into submitting unauthorized requests.
Metrics
Affected Vendors & Products
References
History
Thu, 29 Jan 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Liman 0.7 contains a cross-site request forgery vulnerability that allows attackers to manipulate user account settings without proper request validation. Attackers can craft malicious HTML forms to change user passwords or modify account information by tricking logged-in users into submitting unauthorized requests. | |
| Title | Liman 0.7 - Cross-Site Request Forgery (Change Password) | |
| Weaknesses | CWE-565 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-01-29T14:28:29.695Z
Reserved: 2026-01-27T15:47:08.001Z
Link: CVE-2020-37007
No data.
Status : Received
Published: 2026-01-29T15:16:07.613
Modified: 2026-01-29T15:16:07.613
Link: CVE-2020-37007
No data.
OpenCVE Enrichment
No data.