USVN (aka User-friendly SVN) before 1.0.10 allows CSRF, related to the lack of the SameSite Strict feature.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2020-25070.json"