Personal Project Panilux Cross-Site Request Forgery Vulnerability Allowing Command Injection

Vulnerability

A Cross-Site Request Forgery (CSRF) vulnerability has been identified in Personal Project Panilux versions prior to 0.10.0. This vulnerability allows for Cross-Site Request Forgery attacks, which can lead to Command Injection.

Impact

Exploitation of this vulnerability could allow an attacker to perform actions on behalf of a user, potentially leading to unauthorized command execution on the server.

Remediation

Users and system administrators are advised to upgrade to version 0.10.0 or later.

Added: Dec 9, 2025, 8:58 PM
Updated: Dec 9, 2025, 8:58 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
6.4
remediation
7.7
relevance
1.4
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.