CVE-2020-25986: Monocms

Medium severity, CVSS 6.5. EPSS: 0.6% chance of exploitation in the next 30 days.

A Cross Site Request Forgery (CSRF) vulnerability in MonoCMS Blog 1.0 allows attackers to change the password of a user.

Affected products

Published 2020-10-06. Last modified 2026-06-17.