SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-78280

MEDIUM · CVSS 4.3 EPSS 0.10%

Source: NVD + CISA KEV + EPSS · Published 2026-08-24 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

Hash Form versions up to 1.4.0 are vulnerable to an unauthenticated Cross Site Request Forgery (CSRF) attack, which could allow an attacker to perform unauthorized actions on behalf of users without their consent. This vulnerability poses a medium risk, particularly for applications that rely on Hash Form for user authentication or sensitive operations. Organizations utilizing this software should prioritize patching to mitigate potential exploitation risks.

CVE
CVE-2026-78280
Severity
MEDIUM
CVSS
4.3
EPSS
0.10%

Original NVD Description

Unauthenticated Cross Site Request Forgery (CSRF) in Hash Form <= 1.4.0 versions.