CVE-2026-9591 - Cross-Site Request Forgery (CSRF) in SimplCommerce News Module
CVE ID :CVE-2026-9591 Published : June 17, 2026, 1:41 p.m. | 1 hour, 27 minutes ago Description :Cross-site request forgery (CSRF) in NewsItemApiController in SimplCommerce prior to commit 6233d73e allows an unauthenticated remote attacker to create or modify news items as an administrator...