CVE-2023-52060: Gestsup
Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.
A Cross-Site Request Forgery (CSRF) in Gestsup v3.2.46 allows attackers to arbitrarily edit user profile information via a crafted request.
Affected products
- Gestsup Gestsup: before 3.2.46 (fixed in 3.2.46)
Published 2024-02-13. Last modified 2026-06-17.