You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
The web application does not, or can not, sufficiently verify whether a well-formed, valid, consistent request was intentionally provided by the user who submitted the request.
Learn more on MITRE.
Impact
Prior to 67a82b7, DataDump had no protection against CSRF attacks so requests to generate or delete dumps could be forged.
Patches
You should either update DataDump to the latest version or apply the patch.
Workarounds
There are no known workarounds. You must completely disable DataDump.
References
For more information
If you have any questions or comments about this advisory: