DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via the component /dede/templets_one_edit.phpReferenceshttps://github.com/777erp/cms/blob/main/6.md