Security Advisory

CVE-2015-8379

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2016-01-26 19:00:00
Last updated 2024-08-06 08:13:32
Assigner mitre
State PUBLISHED

Description

CakePHP 2.x and 3.x before 3.1.5 might allow remote attackers to bypass the CSRF protection mechanism via the _method parameter.