Cross-Site Request Forgery in Contao by Contao Open Source CMS
CVE-2019-10642
8.8HIGH
What is CVE-2019-10642?
Contao 4.7 is susceptible to a Cross-Site Request Forgery (CSRF) attack, allowing an unauthorized user to perform actions on behalf of an authenticated user without their consent. This can potentially lead to unauthorized access to sensitive data or changes to the system configuration. Website administrators are urged to apply necessary security measures to mitigate the risks associated with this vulnerability.
