Security Advisory

CVE-2014-7809

6.8

Vulnerability Description

Apache Struts 2.0.0 through 2.3.x before 2.3.20 uses predictable values, which allows remote attackers to bypass the CSRF protection mechanism.
Published Date December 10, 2014
Official Source NIST NVD Advisory