CVE-2025-47708
Description
Cross-Site Request Forgery (CSRF) vulnerability in Drupal Enterprise MFA - TFA for Drupal allows Cross Site Request Forgery.This issue affects Enterprise MFA - TFA for Drupal: from 0.0.0 before 4.7.0, from 5.0.0 before 5.2.0.
CWE
- CWE-352 — CWE-352 Cross-Site Request Forgery (CSRF)
Affected
- Drupal / Enterprise MFA - TFA for Drupal — v=0.0.0 <4.7.0 [affected]; v=5.0.0 <5.2.0 [affected]
CVSS
- (none)
References
Source
cvelistV5-main/cves/2025/47xxx/CVE-2025-47708.json