QID 981263
QID 981263: Nodejs (npm) Security Update for joplin (GHSA-gjwp-7v3g-99pj)
The package joplin before 2.3.2 are vulnerable to Cross-site Request Forgery (CSRF) due to missing CSRF checks in various forms.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-gjwp-7v3g-99pj for updates pertaining to this vulnerability.
Vendor References
- GHSA-gjwp-7v3g-99pj -
github.com/advisories/GHSA-gjwp-7v3g-99pj
CVEs related to QID 981263
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-gjwp-7v3g-99pj | joplin |
|