Security Advisory

CVE-2018-7307

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-03-06 15:00:00
Last updated 2024-08-05 06:24:11
Assigner mitre
State PUBLISHED

Description

The Auth0 Auth0.js library before 9.3 has CSRF because it mishandles the case where the authorization response lacks the state parameter.