296,147
Total vulnerabilities in the database
The clientIp function in CakePHP 3.2.4 and earlier allows remote attackers to spoof their IP via the CLIENT-IP HTTP header.
Software | From | Fixed in |
---|---|---|
cakephp / cakephp | - | 3.2.4.x |
![]() |
1.2.0 | 2.6.13 |
![]() |
2.7.0-rc1 | 2.7.11 |
![]() |
2.8.0-rc1 | 2.8.2 |
![]() |
3.0.0-rc1 | 3.0.17 |
![]() |
3.1.0-beta1 | 3.1.12 |
![]() |
3.2.0-rc1 | 3.2.5 |