← Back to CVE List
CVE-2014-0594
In the Open Build Service (OBS) before version 2.4.6 the CSRF protection is incorrectly disabled in the web interface, allowing for requests without the user's consent.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt