CVE-2021-39198: Cross-Site Request Forgery (CSRF)
(updated )
OroCRM is an open source Client Relationship Management (CRM) application. There are no workarounds that address this vulnerability and all users are advised to update their package.
References
Code Behaviors & Features
Detect and mitigate CVE-2021-39198 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →