CVE-2022-3274 HIGH

CVE-2022-3274: Cross-Site Request Forgery (CSRF) on user's settings in GitHub repository ikus060/rdiffweb prior to 2.4.6. in ikus060/rdiffweb

Vendor Ikus060
Product ikus060/rdiffweb
Weakness CWE-352 · CSRF
Published September 22, 2022
Last update May 22, 2025

CVSS base score

7.0/10
Attack vector Adjacent
Attack complexity Low
Privileges required Low
User interaction Required
Confidentiality High
Integrity Low

CVSS vector

CVSS:3.0/AV:A/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:H