CSRF in REPORT EMOTICON feature
Low
C
Chaturbate
Submitted None
Team Summary
Official summary from Chaturbate
The hacker found that the report emoticon endpoint did not check the csrf token. This was resolved.
Actions:
Reported by
encrypt
Report Details
Additional information and metadata
State
Closed
Substate
Resolved
Bounty
$250.00
Submitted
Weakness
Cross-Site Request Forgery (CSRF)