https://owasp.org/www-community/attacks/csrf
Cross Site Request Forgery (CSRF) | OWASP Foundation
Cross Site Request Forgery (CSRF) on the main website for The OWASP Foundation. OWASP is a nonprofit foundation that works to improve the security of software.
site requestcrossforgerycsrfowasp
https://cvefeed.io/vuln/detail/CVE-2009-2129
CVE-2009-2129 - Elvin CSRF Login Hijack
Apr 23, 2026 - Cross-site request forgery (CSRF) vulnerability in login.php in Elvin 1.2.0 allows remote attackers to hijack the authentication of arbitrary users via a...
cveelvincsrfhijack
https://www.miggo.io/vulnerability-database/cve/CVE-2024-3135
CVE-2024-3135: LocalAI API CSRF Resource DoS | Miggo
LocalAI CSRF via simple content-type requests grants attackers resource exhaustion DoS by tricking users into making unauthorized image generation API calls.
cvelocalaiapicsrfresource
https://www.sentinelone.com/vulnerability-database/cve-2026-4091/
CVE-2026-4091: OPEN-BRAIN WordPress Plugin CSRF Vulnerability
CVE-2026-4091 is a Cross-Site Request Forgery vulnerability in OPEN-BRAIN WordPress plugin. Learn about its impact, affected versions, and mitigation methods.
open brainwordpress plugincvecsrfvulnerability
https://shaarli.pseudopost.org/?searchtags=csrf
Search: [csrf] - Fabians Bookmarks
searchcsrfbookmarks
https://solutionfall.com/question/csrf-protection-how-to-prevent-cross-site-request-forgery-attacks-69da8c2225b/
CSRF protection: how to prevent cross-site request forgery attacks - SolutionFall
CSRF protection: how to prevent cross-site request forgery attacks. What is CSRF? CSRF tricks authenticated users into making unwanted requests. Example: a...
how to preventcsrf protectionsite requestcrossforgery
https://symfonycasts.com/screencast/symfony-security/csrf-token
Security Listener System & Csrf Protection Symfony 5 Security: Authenticators | SymfonyCasts
After we return the "Passport" object, we know that two things happen. First, the "UserBadge" is used to get the "User" object: ...
csrf protectionsecuritylistenersystemsymfony
https://advisories.gitlab.com/npm/ghost/CVE-2026-29784/
Ghost has incomplete CSRF protections around OTC use | GitLab Advisory Database (GLAD)
CVE-2026-29784 Ghost has incomplete CSRF protections around OTC use: Incomplete CSRF protections around /session/verify made it possible to use OTCs in login...
ghostincompletecsrfprotectionsaround
https://www.exploit-db.com/exploits/50595
Zucchetti Axess CLOKI Access Control 1.64 - Cross Site Request Forgery (CSRF) - Hardware webapps...
Dec 14, 2021 - Zucchetti Axess CLOKI Access Control 1.64 - Cross Site Request Forgery (CSRF).. webapps exploit for Hardware platform
access controlsite requestzucchettiaxesscloki
https://processwire.com/talk/topic/3779-use-csrf-in-your-own-forms/?do=findComment&comment=70738
Use CSRF in your own forms. - Tutorials - ProcessWire Support Forums
Hey, The Form API has CSRF protection build in, but if you for some reason don't want to use the API you can however use the CSRF protection. Its very simple...
your ownsupport forumsusecsrfforms
https://www.viking.com.tw/nl/product/CSRF0102FTDP12R1.html
Metaalfilm hoge frequentie MELF weerstand (CSRF-serie CSRF0102FTDP12R1)Fabrikanten - Viking
Gevestigd in Taiwan, Viking Tech Corporation is een van de belangrijkste Metaalfilm hoge frequentie MELF weerstand (CSRF-serie CSRF0102FTDP12R1) fabrikanten...
hogeweerstandcsrfseriefabrikanten
https://security.snyk.io/vuln/SNYK-JAVA-ORGKEYCLOAK-31565
Cross-site Request Forgery (CSRF) in org.keycloak:keycloak-services | CVE-2017-12159 | Snyk
High severity (7.5) Cross-site Request Forgery (CSRF) in org.keycloak:keycloak-services | CVE-2017-12159
site requestcrossforgerycsrfkeycloak
https://hashnode.com/posts/csrf-revisited/62c49c746d73625bbffdcfa2
Discussion on "CSRF Revisited" | Hashnode
Discussion on "CSRF Revisited". Pre-Conditions Portions of this article have been copied from Portswigger Academy. There are many other tips and bypasses that...
discussioncsrfrevisitedhashnode
https://www.playframework.com/documentation/2.6.5/ScalaCsrf
Scala Csrf - 2.6.5
Play Framework - The High Velocity Web Framework For Java and Scala
scalacsrf
https://www.technetexperts.com/configuring-csrf-csrf-express-cookie-session/
Configuring csrf-csrf with Express and Cookie Sessions [Solved]
Jan 21, 2026 - A technical guide for implementing robust CSRF protection using the csrf-csrf library in Express. Learn best practices for configuring getSecret and generating...
configuringcsrfexpresscookiesessions
https://experienceleaguecommunities.adobe.com/adobe-experience-manager-sites-8/acs-commons-publish-dispatcher-flush-csrf-error-25312
ACS commons Publish Dispatcher Flush CSRF error | Community
Hi ,I have been trying to upgrade ACS commons version from 5.3.4 to 6.0.8. After successfully upgrading the version, the dispatcher flush in author is w...
acscommonspublishdispatcherflush
https://vulntitan.com/vulnerabilities/18018
Redux Framework CSRF Vulnerability Fixed in 4.1.24 | VulnTitan
Cross-Site Request Forgery vulnerability in Plugin Redux Framework; affects Versions before 4.1.24; fixed in 4.1.24; CVSS 5.3 medium severity.
redux frameworkcsrfvulnerabilityfixed
https://devhub.checkmarx.com/cve-details/cve-2017-6127/
Cross-Site Request Forgery (CSRF) - CVE-2017-6127 - DevHub
May 9, 2023 - Multiple cross-site request forgery (CSRF) vulnerabilities in the access portal on the DIGISOL DG-HR1400 Wireless Router with firmware 1.00.02 allow remote...
site requestcrossforgerycsrfcve
https://support.atlassian.com/jira/kb/rest-api-calls-with-a-browser-user-agent-header-may-fail-csrf-checks/
REST API calls with a browser User-Agent header may fail CSRF checks | Jira and Jira Service...
Learn how to resolve REST API call failures caused by browser User-Agent headers and understand CSRF protection changes.
rest apiuser agentcallsbrowserheader
https://citation.thinkst.com/talk/11686
Csrf, The Intranet And You - Chaos Communication Congress 23
A detailed introduction to Cross Site Request Forgery. This talk presents the fundamental cause of this vulnerability class and examples of potential attack con
chaos communication congresscsrfintranet
https://teamtreehouse.com/community/duplicated-dom-values-for-the-csrftoken-in-loginhtml
Duplicated DOM values for the "csrf_token" in login.html (Example) | Treehouse Community
Yaroslav Cheremnykh is having issues with: I got some odd thing in my DOM for login view. For some reason, my form has the additional field with csrf_token...
for thetreehouse communitydomvaluescsrf
https://gist.github.com/ananth-iyer/59ecfabcbca73d6c2e3eeb986ed2f3c4?permalink_comment_id=3052135
Magento 2.3.0: Implement below code to skip the CSRF check on your custom route called outside...
Magento 2.3.0: Implement below code to skip the CSRF check on your custom route called outside Magento environment. This implementation does not break core...
magentoimplementcodeskipcsrf
https://cxsecurity.com/issue/WLB-2017060226
Kaspersky Anti-Virus File Server 8.0.3.297 XSS / CSRF / Code Execution - CXSecurity.com
CORE has realised a new security note Kaspersky Anti-Virus File Server 8.0.3.297 XSS / CSRF / Code Execution
kaspersky anti virusfile servercode executionxsscsrf
https://cyberfolks.hr/en/rjecnik/csrf/
CSRF - CyberFolks.hr
csrfhr
https://www.okta.com/ko-kr/identity-101/csrf-attack/
CSRF Attack: Cross-Site Request Forgery Definition & Defense | Okta
csrf attacksite requestcrossforgerydefinition
https://belisc.com/blog/252/hardening-cookie-session-di-laravel-samesite-csrf-dan-session-fixation
Hardening Cookie Session di Laravel: SameSite, CSRF, dan Session Fixation - Beli Source Code
Panduan hardening cookie session di Laravel: SameSite, CSRF, session fixation, Secure cookie, trusted proxy, dan checklist testing.
source codehardeningcookiesessiondi
https://www.ndimensionz.com/tag/csrf/
CSRF Archives - NDZ
csrfarchives
https://kb.globalscape.com/Knowledgebase/11512/For-direct-downloads-redirect-to-obtain-CSRF-token-if-none-is-present?Keywords=Redirect
For direct downloads, redirect to obtain CSRF token, if none is present
direct downloadsredirectobtaincsrftoken
https://target.csrf.patrickod.com/
gorilla/csrf CSRF demo target origin
gorillacsrfdemotargetorigin
https://www.invicti.com/web-application-vulnerabilities/magento-cross-site-request-forgery-csrf-vulnerability-cve-2019-7873
Magento Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-7873) - Web Application...
A cross-site request forgery vulnerability exists in Magento 2.1 prior to 2.1.18, Magento 2.2 prior to 2.2.9, Magento 2.3 prior to 2.3.2. Th... Magento...
site requestweb applicationmagentocrossforgery
https://micronaut-projects.github.io/micronaut-security/snapshot/api/io/micronaut/security/csrf/validator/package-tree.html
io.micronaut.security.csrf.validator Class Hierarchy (security-parent 5.0.0-SNAPSHOT API)
tree: package: io.micronaut.security.csrf.validator
class hierarchyiomicronautsecuritycsrf
https://buildinfos.debian.net/buildinfo-pool/g/golang-github-gorilla-csrf/?C=S;O=A
Index of /buildinfo-pool/g/golang-github-gorilla-csrf
index ofpoolgcsrf
https://www.netgear.com/sg/about/security/kb/netgear-product-vulnerability-advisory_csrf_localfile/
NETGEAR Product Vulnerability Advisory_CSRF_ LocalFile | kb | Security Advisory | About Us | NETGEAR
vulnerability advisorynetgearproductcsrfkb
https://meta.discourse.org/t/google-oauth2-authentication-failure-csrf-detected-omniauth-callbackerror-csrf-detected-csrf-detected/339797?tl=en
(google_oauth2) Authentication failure! csrf_detected: OmniAuth::Strategies::OAuth2::CallbackError,...
Dec 2, 2024 - What is this: hostname foorumi-hel-app process_id 1077 application_version 3cde55b76f6d681a243876b360bd8368c0a81ac6 HTTP_HOST foorumi.katiska.eu REQUEST_METHOD...
googleauthenticationfailurecsrfdetected
https://nl.wordpress.org/plugins/tags/csrf/
Plugin gecategoriseerd als csrf | WordPress.org Nederlands
pluginalscsrfwordpressnederlands
https://gwtnews.blogspot.com/2010/11/re-how-to-prevent-csrfxsrf-when-using.html
Google Web Toolkit: Re: How to prevent CSRF/XSRF when using RequestFactory
Hi Daniel, I haven't tested it yet, but I believe you can extend DefaultRequestTransport as discussed in this thread to set a request header...
google web toolkitpreventcsrfusing
https://www.veracode.com/blog/analysis-and-remediation-guidance-csrf-vulnerability-csurf-expressjs-middleware/
Analysis and Remediation Guidance of CSRF Vulnerability
Sep 8, 2025 - Analysis and remediation guidance to fix CSRF Vulnerability in Csurf Express.js Middleware. Learn how a Software Composition Analysis (SCA) helps.
remediation guidanceanalysiscsrfvulnerability
https://packagist.org/packages/psecio/csrf
psecio/csrf - Packagist.org
CSRF Token Generation Library
csrfpackagist