CVE-2020-23264: Fork-CMS Fork CMS

High severity, CVSS 8.8. EPSS: 0.6% chance of exploitation in the next 30 days.

Cross-site request forgery (CSRF) in Fork-CMS before 5.8.2 allow remote attackers to hijack the authentication of logged administrators.

Affected products

  • Fork-CMS Fork CMS: before 5.8.2 (fixed in 5.8.2)

Published 2021-05-06. Last modified 2026-06-17.