Description
phpBB 3.2.8 allows a CSRF attack that can approve pending group memberships.
Remediation
References
Related Vulnerabilities
Oracle Database Server CVE-2009-1965 Vulnerability (CVE-2009-1965)
WordPress Plugin WordPress Ad Widget Local File Inclusion (2.11.0)
ATutor Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2019-12170)
Moodle Insufficient Verification of Data Authenticity Vulnerability (CVE-2020-1755)