CVE-2020-10771
02.06.2021, 12:15
A flaw was found in Infinispan version 10, where it is possible to perform various actions that could have side effects using GET requests. This flaw allows an attacker to perform a cross-site request forgery (CSRF) attack.
| Vendor | Product | Version |
|---|---|---|
| infinispan | infinispan-server-rest | 10.0.0 |
| redhat | data_grid | 8.0 |
| netapp | oncommand_insight | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration