CVE-2025-49966

Cross-Site Request Forgery (CSRF) vulnerability in Oganro Oganro Travel Portal Search Widget for HotelBeds APITUDE API allows Cross Site Request Forgery. This issue affects Oganro Travel Portal Search Widget for HotelBeds APITUDE API: from n/a through 1.0.
Configurations

No configuration.

History

23 Jun 2025, 20:16

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de Cross-Site Request Forgery (CSRF) en Oganro Oganro Travel Portal Search Widget for HotelBeds APITUDE API permite Cross-Site Request Forgery. Este problema afecta al widget de búsqueda del portal de viajes Oganro para la API APITUDE de HotelBeds: desde n/d hasta la versión 1.0.

20 Jun 2025, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-20 15:15

Updated : 2025-06-23 20:16


NVD link : CVE-2025-49966

Mitre link : CVE-2025-49966

CVE.ORG link : CVE-2025-49966


JSON object : View

Products Affected

No product.

CWE
CWE-352

Cross-Site Request Forgery (CSRF)