MEDIUM
nodcms
CVE published 2026-04-04
CVE-2016-20054
CVE-2016-20054 is a cross-site request forgery vulnerability in Nodcms that allows attackers to craft malicious forms, tricking authenticated administrators into performing unauthorized actions. This can lead to the creation of users or modification of application settings without explicit consent. The vulnerability has a CVSS score of 5.3 and a severity rating of MEDIUM. To mitigate this vulnerability, a [truncated]