Rapid7 · Rapid7 Metasploit · CVE-2017-15084
**Name of the Vulnerable Software and Affected Versions**
Rapid7 Metasploit versions prior to 4.14.1-20170828
**Description**
The issue concerns a logout CSRF in the web UI.
**Recommendations**
For versions prior to 4.14.1-20170828, update to version 4.14.1-20170828 or later to resolve the issue.