EIP-2026-109484
PRE-CVEminiblog 1.0.1 - Cross-Site Request Forgery (Add New Post)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-109484. PoCs published by Besim.
AI-analyzed exploit summary This is a functional CSRF PoC for miniblog 1.0.1 that demonstrates how an attacker can trick an admin into submitting a malicious POST request to add a new post containing a JavaScript payload. The payload redirects the admin's session to an attacker-controlled site to steal cookies.
Description
miniblog 1.0.1 - Cross-Site Request Forgery (Add New Post)
Exploits (1)
This is a functional CSRF PoC for miniblog 1.0.1 that demonstrates how an attacker can trick an admin into submitting a malicious POST request to add a new post containing a JavaScript payload. The payload redirects the admin's session to an attacker-controlled site to steal cookies.