Advanced File System turns Drupal's file storage into a manageable, observable and maintainable subsystem.
The Advanced Filesystem: Backup submodule does not sufficiently validate certain requests. This may allow an attacker to trick an authenticated user into performing unintended actions through a Cross-Site Request Forgery (CSRF) vulnerability.
The vulnerability is mitigated by the fact that advanced_filesystem_backup module must be enabled.