Loading HuntDB...

CSRF Account Takeover

High
T
TikTok
Submitted None

Team Summary

Official summary from TikTok

A Cross-Site Request Forgery (CSRF) vulnerability was found on a TikTok endpoint which could have resulted in a full account takeover. We thank @s3c for reporting this to our team and confirming its resolution.

Reported by s3c

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Submitted

Weakness

Cross-Site Request Forgery (CSRF)