You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
The web application does not, or cannot, sufficiently verify whether a request was intentionally provided by the user who sent the request, which could have originated from an unauthorized actor.
Learn more on MITRE.
Impact
Prior to 67a82b7, DataDump had no protection against CSRF attacks so requests to generate or delete dumps could be forged.
Patches
You should either update DataDump to the latest version or apply the patch.
Workarounds
There are no known workarounds. You must completely disable DataDump.
References
For more information
If you have any questions or comments about this advisory: