Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:27296
HistoryOct 01, 2020 - 3:46 a.m.

Cross-Site Request Forgery (CSRF)

2020-10-0103:46:37
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

0.001 Low

EPSS

Percentile

21.8%

cfme-gemset is vulnerable to cross-site request forgery (CSRF). Lack of authenticity verification of requests in the API notifications allows an attacker to submit requests on behalf of an authenticated user.

0.001 Low

EPSS

Percentile

21.8%