Fyffe Twitter-Clone
- <= 1.0
A cross-site request forgery (CSRF) vulnerability has been identified in Twitter-Clone version 1. This vulnerability allows remote attackers to trick users into deleting posts. By creating hidden HTML forms that target the 'tweetdel.php' file with specific tweet IDs, attackers can automatically submit these forms, resulting in the deletion of posts from the user's account.
Exploitation of this vulnerability allows for unauthorized deletion of posts from the accounts of authenticated users.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.