CSRF Account Takeover
High
T
TikTok
Submitted None
Team Summary
Official summary from TikTok
A Cross-Site Request Forgery (CSRF) vulnerability was found on a TikTok endpoint which could have resulted in a full account takeover. We thank @s3c for reporting this to our team and confirming its resolution.
Actions:
Reported by
s3c
Report Details
Additional information and metadata
State
Closed
Substate
Resolved
Submitted
Weakness
Cross-Site Request Forgery (CSRF)