CVE-2025-27579 | Bitaxe ESP-MIner up to 2.4.x Setting /api/system cross-site request forgery (EUVD-2025-5852)
A vulnerability was found in Bitaxe ESP-MIner up to 2.4.x. It has been classified as problematic. Affected is an unknown function of the file /api/system of the component Setting Handler. The manipulation leads to cross-site request forgery.
This vulnerability is traded as CVE-2025-27579. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.