Skip to main content
Loading…
    CVE-2026-49433 — The DeepAI endpoint 'https://api.deepai.org/change_user_email' accepts POST requests without any CSRF protection. If an attacker can trick a logged-in user into clicking a malicious link, the attacker — CVE Database · The Intelligence Room