Description
The console in Togglz before 2.9.4 allows CSRF.
Remediation
References
https://github.com/advisories/GHSA-697v-pxg3-j262
https://github.com/togglz/togglz/commit/ed66e3f584de954297ebaf98ea4a235286784707
https://github.com/togglz/togglz/pull/495
Related Vulnerabilities
CVE-2019-12041 Vulnerability in maven package org.webjars.npm:remarkable
CVE-2022-25766 Vulnerability in npm package ungit
CVE-2017-15695 Vulnerability in maven package org.apache.geode:geode-core
CVE-2023-33202 Vulnerability in maven package org.bouncycastle:bc-fips-debug
CVE-2023-31419 Vulnerability in maven package org.elasticsearch:elasticsearch