WebsiteBaker Community Forum

WebsiteBaker => Security Announcements => Topic started by: FrankH on December 26, 2010, 08:21:13 AM

Title: Website Baker Security Problem
Post by: FrankH on December 26, 2010, 08:21:13 AM
As found out by different sources, all current versions of Website Baker are vulnerable to CSRF attacks.
(If you do not know what CSRF is, google for it or have a look into Wikipedia.)
The upcoming version 2.8.2 of Website Baker will not be vulnerable anymore, but is not available yet.

To some degree, you can protect yourself against CSRF attacks if you do as follows:

Frank