Description
CSRF exists in the Auth0 authentication service through 14591 if the Legacy Lock API flag is enabled.
Remediation
References
http://www.securityfocus.com/bid/103695
https://auth0.com/docs/security/bulletins/cve-2018-6874
Related Vulnerabilities
CVE-2022-36920 Vulnerability in maven package org.jenkins-ci.plugins:coverity
CVE-2016-10703 Vulnerability in maven package org.webjars.npm:ecstatic
CVE-2017-7657 Vulnerability in maven package org.eclipse.jetty:jetty-client
CVE-2020-2204 Vulnerability in maven package org.jenkins-ci.plugins:fortify-on-demand-uploader
CVE-2021-32691 Vulnerability in npm package data-connector-rock