Loading HuntDB...

CSRF in REPORT EMOTICON feature

Low
C
Chaturbate
Submitted None

Team Summary

Official summary from Chaturbate

The hacker found that the report emoticon endpoint did not check the csrf token. This was resolved.

Reported by encrypt

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Bounty

$250.00

Submitted

Weakness

Cross-Site Request Forgery (CSRF)