CVE-2026-31016
MEDIUM
NVD
CVSS Score
6.5
Severity
MEDIUM
Published
Jun 29, 2026
Vendor
unknown
Description
Cross Site Request Forgery vulnerability in Squidex.io Squidex CMS v.7.21.0 and before allows a remote attacker to escalate privileges via the IdentityServer account profile endpoint