Security Advisory
CVE-2014-7809
6.8
Vulnerability Description
Apache Struts 2.0.0 through 2.3.x before 2.3.20 uses predictable values, which allows remote attackers to bypass the CSRF protection mechanism.
Published Date
December 10, 2014
Official Source
NIST NVD Advisory