Description
CSRF exists in the Auth0 authentication service through 14591 if the Legacy Lock API flag is enabled.
Remediation
References
http://www.securityfocus.com/bid/103695
https://auth0.com/docs/security/bulletins/cve-2018-6874
Related Vulnerabilities
CVE-2019-17495 Vulnerability in maven package org.webjars.bower:swagger-ui
CVE-2018-1131 Vulnerability in maven package org.infinispan:infinispan-core
CVE-2017-7561 Vulnerability in maven package org.jboss.resteasy:resteasy-jaxrs
CVE-2021-43783 Vulnerability in npm package @backstage/plugin-scaffolder-backend