Symphony 2.2.4 - Cross-Site Request Forgery

Related Vulnerabilities: CVE-2013-7346  
Publish Date: 24 Mar 2014

Symphony is prone to a cross-site request-forgery vulnerability.

An attacker can exploit the cross-site request forgery issue to perform unauthorized actions in the context of a logged-in user of the affected application. This may aid in other attacks.

Symphony version 2.3.1 and prior are vulnerable. 

<img src="">