The logout option within MFA did not include the necessary token to avoid the risk of users inadvertently being logged out via CSRF.
2024-05-31T21:15:09.647
2025-05-30T16:48:34.143
Analyzed
[email protected]
CVSSv3.1: 8.8 (HIGH)