Description
CSRF exists in the Auth0 authentication service through 14591 if the Legacy Lock API flag is enabled.
Remediation
References
http://www.securityfocus.com/bid/103695
https://auth0.com/docs/security/bulletins/cve-2018-6874
Related Vulnerabilities
CVE-2019-19771 Vulnerability in npm package bs85check
CVE-2018-6464 Vulnerability in npm package simditor
CVE-2016-4567 Vulnerability in maven package org.webjars:mediaelement
CVE-2023-26136 Vulnerability in maven package org.webjars.npm:tough-cookie
CVE-2022-22965 Vulnerability in maven package org.springframework.boot:spring-boot-starter-webflux