CVE-2023-24518: Pandorafms Pandora Fms
High severity, CVSS 7.1. EPSS: 0.2% chance of exploitation in the next 30 days.
A Cross-site Request Forgery (CSRF) vulnerability in Pandora FMS allows an attacker to force authenticated users to send a request to a web application they are currently authenticated against. This issue affects Pandora FMS version 767 and earlier versions on all platforms.
Affected products
- Pandorafms Pandora Fms: up to and including 767
Published 2023-10-03. Last modified 2026-06-17.