CVE-2023-52060: Gestsup

Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.

A Cross-Site Request Forgery (CSRF) in Gestsup v3.2.46 allows attackers to arbitrarily edit user profile information via a crafted request.

Affected products

  • Gestsup Gestsup: before 3.2.46 (fixed in 3.2.46)

Published 2024-02-13. Last modified 2026-06-17.