Cross-Site Request Forgery (CSRF) in namelessmc/nameless

Valid

Reported on

Aug 24th 2021


✍️ Description

csrf bug to follow a topic

🕵️‍♂️ Proof of Concept

i see everywhere is csrf token checking . But in this case csrf token checking is missing .
Bellow url is vulnerable to csrf attack to follow a topic .

http://localhost/nameless/index.php?route=/forum/topic/1/&action=follow

💥 Impact

csrf bug to follow a topic

Occurences

We have contacted a member of the namelessmc/nameless team and are waiting to hear back 3 months ago
We have contacted a member of the namelessmc/nameless team and are waiting to hear back 3 months ago
We have contacted a member of the namelessmc/nameless team and are waiting to hear back 3 months ago
Sam validated this vulnerability 3 months ago
ranjit-git has been awarded the disclosure bounty
The fix bounty is now up for grabs
Sam confirmed that a fix has been merged on 6dd1d5 3 months ago
The fix bounty has been dropped