Description
CSRF exists in the Auth0 authentication service through 14591 if the Legacy Lock API flag is enabled.
Remediation
References
http://www.securityfocus.com/bid/103695
https://auth0.com/docs/security/bulletins/cve-2018-6874
Related Vulnerabilities
CVE-2020-1945 Vulnerability in maven package org.apache.ant:ant
CVE-2020-13933 Vulnerability in maven package org.apache.shiro:shiro-web
CVE-2020-1951 Vulnerability in maven package org.apache.tika:tika-parsers
CVE-2020-28499 Vulnerability in maven package org.webjars.npm:merge
CVE-2021-20289 Vulnerability in maven package org.jboss.resteasy:resteasy-core