CVE-2020-23686: Ayacms Project Ayacms

High severity, CVSS 8.8. EPSS: 0.6% chance of exploitation in the next 30 days.

Cross site request forgery (CSRF) vulnerability in AyaCMS 3.1.2 allows attackers to change an administrators password or other unspecified impacts.

Affected products

Published 2021-11-02. Last modified 2026-06-17.