Vulnerabilities > Lightbend > Play Framework > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-08-17 CVE-2020-12480 Cross-Site Request Forgery (CSRF) vulnerability in Lightbend Play Framework
In Play Framework 2.6.0 through 2.8.1, the CSRF filter can be bypassed by making CORS simple requests with content types that contain parameters that can't be parsed.
network
low complexity
lightbend CWE-352
6.5