CVE-2024-24524: Flusity
High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.
Cross Site Request Forgery (CSRF) vulnerability in flusity-CMS v.2.33, allows remote attackers to execute arbitrary code via the add_menu.php component.
Affected products
- Flusity Flusity: version 2.33 only
Published 2024-02-02. Last modified 2026-06-17.