Plume CMS version 1.2.4 suffers from a cross site request forgery vulnerability.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/90542/major_rls70.txt
Source: https://packetstormsecurity.com/files/90542/Plume-CMS-Cross-Site-Request-Forgery.html

