CVE-2021-44227

Publication date

2021-12-02 02:52:31

Family

mitre

State

PUBLISHED

Description

In GNU Mailman before 2.1.38, a list member or moderator can get a CSRF token and craft an admin request (using that token) to set a new admin password or make other changes.