In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Cross-site Request Forgery (CSRF) vulnerabilities in an interactive lesson.
Start learningThere is no fixed version for org.wso2.ei:wso2ei-parent
.
Affected versions of this package are vulnerable to Cross-site Request Forgery (CSRF) due to the absence of CSRF token validation. An attacker can compromise account settings and data integrity by crafting malicious requests that can trigger state-changing operations on behalf of an authenticated user.
Note:
This is only exploitable if the user with access to the management console is tricked into performing the malicious action.