Description
The link to reset all templates of a database activity did not include the necessary token to prevent a CSRF risk.
Remediation
References
Related Vulnerabilities
Twisted Web HTTP Server Direct Request ('Forced Browsing') Vulnerability (CVE-2016-1000111)
MySQL CVE-2021-2357 Vulnerability (CVE-2021-2357)
Apache Tomcat Loop with Unreachable Exit Condition ('Infinite Loop') Vulnerability (CVE-2021-41079)
WordPress Plugin Social Sharing-Social Warfare Multiple Vulnerabilities (3.5.2)