CVE-2023-52555 by Fred · 01/03/2024 In mongo-express 1.0.2, /admin allows CSRF, as demonstrated by deletion of a Collection. Date published : 2024-03-01 https://github.com/mongo-express/mongo-express/issues/1338 Share this: Share on X (Opens in new window) X Share on Bluesky (Opens in new window) Bluesky Share on Facebook (Opens in new window) Facebook Share on LinkedIn (Opens in new window) LinkedIn Share on Threads (Opens in new window) Threads Share on Mastodon (Opens in new window) Mastodon Similar