livehelperchat is vulnerable to Cross-Site Request Forgery (CSRF)
The web application does not, or cannot, sufficiently verify whether a request was intentionally provided by the user who sent the request, which could have originated from an unauthorized actor.
Link | Tags |
---|---|
https://huntr.dev/bounties/adaf98cf-60ab-40e0-aa3b-42ba0d3b7cbf | third party advisory exploit |
https://github.com/livehelperchat/livehelperchat/commit/6ad1349dc5e7503b00c5017499a0a895d7654a61 | third party advisory patch |