Looking for the vulnerability index of Invicti's legacy products?
Play Framework Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-12480) - Vulnerability Database

Play Framework Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-12480)

Description

In Play Framework 2.6.0 through 2.8.1, the CSRF filter can be bypassed by making CORS simple requests with content types that contain parameters that can't be parsed.

References

Related Vulnerabilities