GHSA-4g88-4hgm-m99x, CVE-2023-45884
npm/openmct
Cross-Site Request Forgery (CSRF)
Cross Site Request Forgery (CSRF) vulnerability in NASA Open MCT (aka openmct) through 3.1.0 allows attackers to view sensitive information via the flexibleLayout plugin.
All versions up to 3.1.0
Unfortunately, there is no solution available yet.
2023-11-16
source |