CVE-2016-15009: Openacs Bug-Tracker

High severity, CVSS 8.8. EPSS: 0.3% chance of exploitation in the next 30 days.

A vulnerability classified as problematic has been found in OpenACS bug-tracker. Affected is an unknown function of the file lib/nav-bar.adp of the component Search. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The name of the patch is aee43e5714cd8b697355ec3bf83eefee176d3fc3. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-217440.

Affected products

  • Openacs Bug-Tracker: before 2016-05-25 (fixed in 2016-05-25)

Published 2023-01-05. Last modified 2026-06-17.