CVE-2026-73292 | SemaphoreUI Semaphore up to 2.18.20 Password Endpoint cross-site request forgery

SecurityVulns

A vulnerability was found in SemaphoreUI Semaphore up to 2.18.20. It has been classified as problematic. Affected by this issue is some unknown functionality of the component Password Endpoint. The manipulation leads to cross-site request forgery.

This vulnerability is listed as CVE-2026-73292. The attack may be initiated remotely. There is no available exploit.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More