CVE-2020-25070: Usvn
High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.
USVN (aka User-friendly SVN) before 1.0.10 allows CSRF, related to the lack of the SameSite Strict feature.
Affected products
- Usvn Usvn: before 1.0.10 (fixed in 1.0.10)
Published 2020-09-01. Last modified 2026-06-17.