Launchpad.net

CVE 2016-8600

In dotCMS 3.2.1, attacker can load captcha once, fill it with correct value and then this correct value is ok for forms with captcha check later.

See the CVE page on Mitre.org for more details.