Vulnerability Database

308,820

Total vulnerabilities in the database

CVE-2018-12354

Knowage (formerly SpagoBI) 6.1.1 allows CSRF via every form, as demonstrated by a /knowage/restful-services/2.0/analyticalDrivers/ POST request.

  • Published: Jun 13, 2018
  • Updated: Nov 9, 2025
  • CVE: CVE-2018-12354
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 6.8
  • AV:N/AC:M/Au:N/C:P/I:P/A:P

CWEs: