Vulnerabilities (CVE)

Filtered by vendor Cakefoundation Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-15400 1 Cakefoundation 1 Cakephp 2021-07-21 4.3 MEDIUM 4.3 MEDIUM
CakePHP before 4.0.6 mishandles CSRF token generation. This might be remotely exploitable in conjunction with XSS.