Biscuit's Bug Bounty Playbook
Search...
Ctrl +โK
Bug Bounty Reports & Articles
Request Forgery (CSRF & SSRF)
CSRF
Previous
Request Forgery (CSRF & SSRF)
Next
SSRF
Last updated
6 months ago
5๏ธโฃ
๐ข
Grammarly disclosed on HackerOne: Lack of CSRF header validation at...
HackerOne
Reddit disclosed on HackerOne: CSRF (protection bypassed) to force...
HackerOne
QIWI disclosed on HackerOne: Account takeover just through csrf in...
HackerOne
U.S. Dept Of Defense disclosed on HackerOne: Account takeover...
HackerOne
Logitech disclosed on HackerOne: One Click Account takeover using...
HackerOne
Gratipay disclosed on HackerOne: CSRF csrftoken in cookies
HackerOne
Coinbase disclosed on HackerOne: CSRF bug on password change
HackerOne
drchrono disclosed on HackerOne: CSRF Add Album On onpatient.com
HackerOne
Site Wide CSRF on Glassdoor
WitCoat Security Blog