Description
CSRF exists in the Auth0 authentication service through 14591 if the Legacy Lock API flag is enabled.
Remediation
References
http://www.securityfocus.com/bid/103695
https://auth0.com/docs/security/bulletins/cve-2018-6874
Related Vulnerabilities
CVE-2016-10624 Vulnerability in npm package selenium-chromedriver
CVE-2021-23353 Vulnerability in maven package org.webjars.npm:jspdf
CVE-2019-9512 Vulnerability in maven package io.netty:netty-codec-http2
CVE-2017-16148 Vulnerability in npm package serve46
CVE-2019-14262 Vulnerability in maven package com.drewnoakes:metadata-extractor