Cross-site Request Forgery (CSRF)
Affecting upmin-admin gem, versions >0.0.0
upmin-admin is Customizable admin dashboards generated with only a few lines of code.
Affected versions of the package are vulnerable to Cross-site Request Forgery (CSRF). The anti-CSRF protection
protect_from_forgery is off by default in
There is no fix version for
Do your applications use this vulnerable package?
- Jason Yeo
- Snyk ID
- 30 Mar, 2016
- 10 Jan, 2018