Apache Continuum versions 1.3.6 and 1.4.0 Beta suffer from a cross site request forgery vulnerability. Earlier unsupported versions are also vulnerable.
ce3bb3132116881504d85a987dcae5a6efc2e7aa84e4ad9fc0ce456ec27175e2
Apache Archiva versions 1.0 through 1.0.3, 1.1 thorough 1.1.4, 1.2 through 1.2.2, and 1.3 through 1.3.1 suffer from a cross site request forgery vulnerability.
6b5fdc7ee2bcaee35a141963912a60ecb1403a705140c6032418873569face0d