Skip to content

RedwoodSDK has Same-site CSRF through lack of origin validation in its server actions

Moderate severity GitHub Reviewed Published Apr 20, 2026 in redwoodjs/sdk • Updated Apr 24, 2026

No open alerts for this advisory

Give feedback on Dependabot alerts