Description
Cross-site request forgery (CSRF) vulnerability in the Spring Batch Admin before 1.3.0 allows remote attackers to hijack the authentication of unspecified victims and submit arbitrary requests, such as exploiting the file upload vulnerability.
Remediation
References
http://www.openwall.com/lists/oss-security/2017/08/16/5
http://www.securityfocus.com/bid/100410
Related Vulnerabilities
CVE-2019-1003072 Vulnerability in maven package org.jenkins-ci.plugins:wildfly-deployer
CVE-2019-9142 Vulnerability in maven package org.b3log:symphony
CVE-2019-10466 Vulnerability in maven package org.jenkins-ci.plugins.plugin:fireline
CVE-2022-46175 Vulnerability in maven package org.webjars.bower:json5