Vulnerabilities > Cakefoundation > Cakephp > 2.8.2

DATE CVE VULNERABILITY TITLE RISK
2020-06-30 CVE-2020-15400 Cross-site Scripting vulnerability in Cakefoundation Cakephp
CakePHP before 4.0.6 mishandles CSRF token generation.
network
low complexity
cakefoundation CWE-79
4.3