Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-29722


A CSRF vulnerability in Commercify v1.0 allows remote attackers to perform unauthorized actions on behalf of authenticated users. The issue exists due to missing CSRF protection on sensitive endpoints.


Published

2025-04-17T18:15:49.860

Last Modified

2025-04-23T18:49:16.977

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 6.3 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-352

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application yassmittal commercify 1.0 Yes

References