Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:25719
HistoryJun 19, 2020 - 4:54 a.m.

Cross-Site Request Forgery (CSRF)

2020-06-1904:54:09
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15

EPSS

0.001

Percentile

31.5%

drupal/drupal is vulnerable to cross-site request forgery (CSRF). The Form API does not properly handle certain form input from cross-site requests, which allow remote attackers to submit requests on behalf of the authenticated user.