In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade silverstripe/forum to version 0.6.2, 0.7.4 or higher.
Affected versions of this package are vulnerable to Cross-site Request Forgery (CSRF) via directly accessible Forum module actions. An attacker can bypass CSRF protections and anti-spam controls by invoking state-changing forum actions through direct GET requests. This may allow unauthorized creation of member accounts, posting to forums, or execution of moderator actions such as moving topics when a privileged user is induced to visit a crafted URL.