Description
The console in Togglz before 2.9.4 allows CSRF.
Remediation
References
https://github.com/advisories/GHSA-697v-pxg3-j262
https://github.com/togglz/togglz/commit/ed66e3f584de954297ebaf98ea4a235286784707
https://github.com/togglz/togglz/pull/495
Related Vulnerabilities
CVE-2023-30530 Vulnerability in maven package org.jenkins-ci.plugins:consul-kv-builder
CVE-2020-7754 Vulnerability in npm package npm-user-validate
CVE-2020-2185 Vulnerability in maven package org.jenkins-ci.plugins:ec2
CVE-2016-6814 Vulnerability in maven package org.codehaus.groovy:groovy-all
CVE-2019-3772 Vulnerability in maven package org.springframework.integration:spring-integration-ws