CVE-2024-23647

Cross-Site Request Forgery (CSRF) in go/goauthentik.io

Identifiers

GHSA-mrx3-gxjx-hjqj, CVE-2024-23647

Package Slug

go/goauthentik.io

Vulnerability

Cross-Site Request Forgery (CSRF)

Description

Cross-Site Request Forgery (CSRF) in goauthentik.io.

Affected Versions

All versions up to 2023.8.6, all versions starting from 2023.10.0 up to 2023.10.6

Solution

Upgrade to versions 2023.8.7, 2023.10.7 or above.

Last Modified

2024-01-30

source