CVE-2020-14989

Publication date

2021-03-11 18:14:00

Family

mitre

State

PUBLISHED

Description

An issue was discovered in Bloomreach Experience Manager (brXM) 4.1.0 through 14.2.2. It allows CSRF if the attacker uses GET where POST was intended.