CVE-2025-2832

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Mar 27, 2025
Updated: Apr 11, 2025
CWE ID 352
CWE ID 862

Summary

CVE-2025-2832 is a newly disclosed vulnerability affecting the mingyuefusu 明月复苏 tushuguanlixitong 图书管理系统 up to the version d4836f6b49cd0ac79a4021b15ce99ff7229d4694. This issue poses a security risk due to the presence of cross-site request forgery (CSRF). The vulnerability is located in some unspecified processing and allows an attacker to initiate manipulative requests on behalf of a user, potentially leading to unintended actions. The exploit for this vulnerability has been made public, increasing the threat to affected systems.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share