CVE-2024-31613: Bosscms

Medium severity, CVSS 5.4. EPSS: 0.2% chance of exploitation in the next 30 days.

BOSSCMS v3.10 is vulnerable to Cross Site Request Forgery (CSRF) in name="head_code" or name="foot_code."

Affected products

  • Bosscms Bosscms: version 3.10.0 only

Published 2024-06-10. Last modified 2026-06-17.