Cross-site request forgery (CSRF) vulnerability in Apache CouchDB 0.8.0 through 0.11.0 allows remote attackers to hijack the authentication of administrators for direct requests to an installation URL.
https://bugzilla.redhat.com/show_bug.cgi?id=624764
http://www.securityfocus.com/bid/42501
http://www.securityfocus.com/archive/1/513174/100/0/threaded