Description
Clockwork Web before 0.1.2, when Rails before 5.2 is used, allows CSRF.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-0750 | Clockwork Web contains a Cross-Site Request Forgery Vulnerability with Rails < 5.2 |
Github GHSA |
GHSA-p4xx-w6fr-c4w9 | Clockwork Web contains a Cross-Site Request Forgery Vulnerability with Rails < 5.2 |
References
History
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Wed, 26 Mar 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-652 | |
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-03-26T17:35:33.917Z
Reserved: 2023-02-02T00:00:00.000Z
Link: CVE-2023-25015
Updated: 2024-08-02T11:11:43.547Z
Status : Modified
Published: 2023-02-02T04:15:08.107
Modified: 2025-03-26T18:15:23.670
Link: CVE-2023-25015
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA