Red Hat Bugzilla – Bug 1475076
CVE-2017-5943 rt: Information leak of CSRF verification tokens
Last modified: 2017-07-25 21:36:32 EDT
It was discovered that Request Tracker is prone to an information leak of cross-site request forgery (CSRF) verification tokens if a user is tricked into visiting a specially crafted URL by an attacker.
Created rt tracking bugs for this issue:
Affects: fedora-all [bug 1475084]