CVE-2020-35239 | CakePHP up to 4.1.3 CsrfProtectionMiddleware override cross-site request forgery
A vulnerability classified as problematic was found in CakePHP up to 4.1.3. Affected by this vulnerability is an unknown functionality of the component CsrfProtectionMiddleware. The manipulation of the argument override leads to cross-site request forgery.
This vulnerability is known as CVE-2020-35239. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.