[openstreetmap/openstreetmap-website] [Security] CSRF bypass that can lead to account takeover (#3089)

mmd notifications at github.com
Fri Apr 9 12:08:08 UTC 2021


Well, this issue already includes all the relevant details. It was clear enough to reproduce it locally at least.

-- 
You are receiving this because you are subscribed to this thread.
Reply to this email directly or view it on GitHub:
https://github.com/openstreetmap/openstreetmap-website/issues/3089#issuecomment-816636720
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openstreetmap.org/pipermail/rails-dev/attachments/20210409/5a8d225f/attachment.htm>


More information about the rails-dev mailing list