CVE-2025-2832
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Published Mar 27, 2025
Updated: Apr 11, 2025
CWE ID 352
CWE ID 862
Summary
CVE-2025-2832 is a newly disclosed vulnerability affecting the mingyuefusu 明月复苏 tushuguanlixitong 图书管理系统 up to the version d4836f6b49cd0ac79a4021b15ce99ff7229d4694. This issue poses a security risk due to the presence of cross-site request forgery (CSRF). The vulnerability is located in some unspecified processing and allows an attacker to initiate manipulative requests on behalf of a user, potentially leading to unintended actions. The exploit for this vulnerability has been made public, increasing the threat to affected systems.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.