Vulnerability CVE-2023-52555


Published: 2024-03-01

Description:
In mongo-express 1.0.2, /admin allows CSRF, as demonstrated by deletion of a Collection.

 References:
https://github.com/mongo-express/mongo-express/issues/1338

Copyright 2026, cxsecurity.com

 

Back to Top