Description
Pivotal Spring Batch Admin, all versions, does not contain cross site request forgery protection. A remote unauthenticated user could craft a malicious site that executes requests to Spring Batch Admin. This issue has not been patched because Spring Batch Admin has reached end of life.
Remediation
References
https://pivotal.io/security/cve-2018-1230
http://www.securityfocus.com/bid/103463
Related Vulnerabilities
CVE-2022-3509 Vulnerability in maven package com.google.protobuf:protobuf-java
CVE-2021-25738 Vulnerability in maven package io.kubernetes:client-java-parent
CVE-2020-9281 Vulnerability in npm package ckeditor4-dev
CVE-2019-10277 Vulnerability in maven package hudson.plugins:starteam
CVE-2023-3315 Vulnerability in maven package org.jenkins-ci.plugins:teamconcert