Skip to content

[BUG] [GSSoC'26] GET /api/auth/logout is CSRF-vulnerable: any third-party page can force-logout authenticated users via a passive request #207

[BUG] [GSSoC'26] GET /api/auth/logout is CSRF-vulnerable: any third-party page can force-logout authenticated users via a passive request

[BUG] [GSSoC'26] GET /api/auth/logout is CSRF-vulnerable: any third-party page can force-logout authenticated users via a passive request #207