Description
Cross-Site Request Forgery (CSRF) vulnerability in Drupal Open Social allows Cross Site Request Forgery.This issue affects Open Social: from 0.0.0 before 12.3.14, from 12.4.0 before 12.4.13.
Problem types
CWE-352 Cross-Site Request Forgery (CSRF)
Product status
0.0.0 (semver) before 12.3.14
12.4.0 (semver) before 12.4.13
Credits
Ivo Van Geertruyen (mr.baileys)
Alexander Varwijk (kingdutch)
Robert Ragas (robertragas)
Greg Knaddison (greggles)
References
www.drupal.org/sa-contrib-2025-079