OpenRefine's PreviewExpressionCommand, which is eval, lacks protection against cross-site request forgery (CSRF)
High severity
GitHub Reviewed
Published
Oct 24, 2024
in
OpenRefine/OpenRefine
•
Updated Oct 24, 2024
Give feedback on Dependabot alerts