Skip to content

Embed Semgrep Community Rule java.spring.security.audit.spring-csrf-disabled.spring-csrf-disabled

Vadym Riznyk requested to merge origin/feat/issue-441047/spring-csrf-disabled into main

SAST Vulnerable MRE Addition or Enhancement

Background Information

gitlab-org/gitlab#441047 is aimed towards identifying possible CSRF disabling.

Changes Summary

This MRE adds a simple java application using the insecure configuration with disabled CSRF

Edited by Vadym Riznyk

Merge request reports