simple-cms icon indicating copy to clipboard operation
simple-cms copied to clipboard

simple-cms has Cross-site request forgery

Open SunJ3t opened this issue 5 years ago • 0 comments

http://192.168.2.129/simple/admin/?delpage=8

I can delete any page when I send the url to administrator. I can also use the Short DomainNames to encode the url.

1

SunJ3t avatar Aug 08 '18 04:08 SunJ3t