CVE-2015-6007: Refbase

Medium severity, CVSS 6.8. EPSS: 0.7% chance of exploitation in the next 30 days.

Cross-site request forgery (CSRF) vulnerability in Web Reference Database (aka refbase) through 0.9.6 allows remote attackers to hijack the authentication of arbitrary users.

Affected products

  • Refbase Refbase: up to and including 0.9.6

Published 2015-09-28. Last modified 2026-06-17.