CVE-2020-25070: Usvn

High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.

USVN (aka User-friendly SVN) before 1.0.10 allows CSRF, related to the lack of the SameSite Strict feature.

Affected products

  • Usvn Usvn: before 1.0.10 (fixed in 1.0.10)

Published 2020-09-01. Last modified 2026-06-17.