CVE-2020-11627: Primekey Ejbca

High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.

An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2. A Cross Site Request Forgery (CSRF) issue has been found in the CA UI.

Affected products

  • Primekey Ejbca: before 6.15.2.6 (fixed in 6.15.2.6); from 7.0.0, before 7.3.1.2 (fixed in 7.3.1.2)

Published 2020-04-08. Last modified 2026-06-17.