CakePHP Cross-Site Request Forgery (CSRF) Vulnerability - CVE-2020-15400 - Vulnerability Database

CakePHP Cross-Site Request Forgery (CSRF) Vulnerability - CVE-2020-15400

Medium
Reference: CVE-2020-15400
Title: CakePHP Cross-Site Request Forgery (CSRF) Vulnerability
Overview:

CakePHP before 4.0.6 mishandles CSRF token generation. This might be remotely exploitable in conjunction with XSS.