Logout CSRF
Low
Vulnerability Details
Cross-Site Request Forgery (CSRF) logout application
Because of that gap, he updates a man's attack in the middle and is exposed to the agent and all his personal data at risk
This may cause the web to be compromised
I will send a test script and a video explaining everything about the problem
Resource https://wakatime.com
Parameter login
Method Get
Detection Type Cross-Site Request Forgery (CSRF) logout application
Test Browser Google Chrome & Internet Explorer
Thanks !!
Actions
View on HackerOneReport Stats
- Report ID: 244778
- State: Closed
- Substate: duplicate