216.73.217.22

CVE-2025-12479

· Published 29/10/2025 17:15 · Modified 29/10/2025 17:15

Labels: CVE-2025-12479 2025-10-29CVE-2025-12479CWE-352a0340c66-c385-4f8b-991b-3d05f6fd5220

Essential information

Published
29/10/2025 17:15
Modified
29/10/2025 17:15
Author
Creator
CVSS
10.0 CRITICAL (v3) 10.0 CRITICAL (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

Systemic Lack of Cross-Site Request Forgery (CSRF) Token Implementation.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5 .

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
a0340c66-c385-4f8b-991b-3d05f6fd5220
NVD
View on NVD

Affected products (CPE)

ProductCPE
blu / blu-ic2 cpe:2.3:a:blu:blu-ic2:*:*:*:*:*:*:*:*
blu / blu-ic4 cpe:2.3:a:blu:blu-ic4:*:*:*:*:*:*:*:*

References