Description
CSRF exists in the Auth0 authentication service through 14591 if the Legacy Lock API flag is enabled.
Remediation
References
https://auth0.com/docs/security/bulletins/cve-2018-6874
http://www.securityfocus.com/bid/103695
Related Vulnerabilities
CVE-2023-37899 Vulnerability in npm package @feathersjs/transport-commons
CVE-2022-31139 Vulnerability in maven package io.github.karlatemp:unsafe-accessor
CVE-2024-36401 Vulnerability in maven package org.geoserver:gs-wms
CVE-2023-49383 Vulnerability in maven package com.jfinal:jfinal
CVE-2022-3143 Vulnerability in maven package org.wildfly.security:wildfly-elytron-realm-ldap