CVE-2019-5924: Rednao Smart Forms

High severity, CVSS 8.8. EPSS: 1.2% chance of exploitation in the next 30 days.

Cross-site request forgery (CSRF) vulnerability in Smart Forms 2.6.15 and earlier allows remote attackers to hijack the authentication of administrators via a specially crafted page.

Affected products

  • Rednao Smart Forms: up to and including 2.6.15

Published 2019-03-12. Last modified 2026-06-17.