Total vulnerabilities in the database
An issue was discovered in Bloomreach Experience Manager (brXM) 4.1.0 through 14.2.2. It allows CSRF if the attacker uses GET where POST was intended.
Software | From | Fixed in |
---|---|---|
bloomreach / experience_manager | 14.1.0 | 14.2.2.x |