XSRF - complete task request omits atl-token

XMLWordPrintable

    • 5

      Potential XSRF vulnerability in tasks. No atl-token is present in the request to complete a task which suggests an attacker may be able to craft a cross site request forgery and action a task without the correct authorisation.

              Assignee:
              Tung Dang
              Reporter:
              Dee (Inactive)
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

                Created:
                Updated:
                Resolved: