GHSA-m5pm-rgvf-vg22
GitHub Security Advisory
Apache OpenMeetings vulnerable to Cross-Site Request Forgery
✓ GitHub Reviewed
HIGH
Has CVE
Advisory Details
Apache OpenMeetings 1.0.0 is vulnerable to Cross-Site Request Forgery (CSRF) attacks, XSS attacks, click-jacking, and MIME based attacks. The issue is fixed in version 3.3.0.
Affected Packages
Maven
org.apache.openmeetings:openmeetings-parent
Affected versions:
1.0.0
(fixed in 3.3.0)
Related CVEs
Key Information
7.5
/10
Dataset
Last updated: September 13, 2025 6:30 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.