Vulnerabilities > EDX > Configuration > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2018-02-03 | CVE-2015-2186 | Improper Input Validation vulnerability in EDX Configuration and Edx-Platform The Ansible edxapp role in the Configuration Repo in edX allows remote websites to spoof edX accounts by leveraging use of the string literal "False" instead of a boolean False for the CORS_ORIGIN_ALLOW_ALL setting. | 5.0 |