CVE-2020-11627: Primekey Ejbca
High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.
An issue was discovered in EJBCA before 6.15.2.6 and 7.x before 7.3.1.2. A Cross Site Request Forgery (CSRF) issue has been found in the CA UI.
Affected products
- Primekey Ejbca: before 6.15.2.6 (fixed in 6.15.2.6); from 7.0.0, before 7.3.1.2 (fixed in 7.3.1.2)
Published 2020-04-08. Last modified 2026-06-17.