First published: Thu Apr 30 2020(Updated: )
Apache OFBiz 17.12.01 is vulnerable to some CSRF attacks.
Credit: security@apache.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apache OFBiz | =17.12.01 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-0235 is a vulnerability in Apache OFBiz 17.12.01 that makes it susceptible to some CSRF attacks.
CVE-2019-0235 has a severity rating of 8.8 (high).
Apache OFBiz 17.12.01 is affected by CVE-2019-0235.
There is currently no known fix or patch for CVE-2019-0235. It is recommended to update to the latest version of Apache OFBiz when a fix becomes available, and implement additional security measures.
The Common Weakness Enumeration (CWE) associated with CVE-2019-0235 is CWE-352 (Cross-Site Request Forgery).