Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:7365
HistoryAug 28, 2018 - 6:11 a.m.

Cross-Site Request Forgery (CSRF)

2018-08-2806:11:36
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
2

0.001 Low

EPSS

Percentile

48.2%

github.com/openshift/console is vulnerable to cross-site request forgery (CSRF) on proxied requests. The server did not perform verification for anti-CSRF tokens and source Origin header of requests. This would allow an attacker to submit requests on behalf of authenticated users via a specially crafted HTML page.

0.001 Low

EPSS

Percentile

48.2%

Related for VERACODE:7365