flusity-CMS v2.33 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /core/tools/update_contact_form_settings.php
No PoCs from references.
- https://github.com/fkie-cad/nvd-json-data-feeds