<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Csrf — PoC Archive</title><link>https://poc.intelseclab.com/tags/csrf/</link><description>Latest proof-of-concept entries.</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Sun, 05 Jul 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://poc.intelseclab.com/tags/csrf/index.xml" rel="self" type="application/rss+xml"/><item><title>Sliver C2 MCP Server Unauthenticated CORS/Preflight Bypass (CVE-2026-34227)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-34227-sliver-mcp-cors-bypass/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-34227-sliver-mcp-cors-bypass/</guid><description>High severity — web · CVE-2026-34227 (GHSA-6fpf-248c-m7wm). Status: PoC. Affects: Sliver C2 framework — MCP (Model Context Protocol) server interface. Tags: sliver, c2, mcp, cors, csrf, sse, cross-origin, data-exfiltration.</description><category>web</category><category>High</category><category>sliver</category><category>c2</category><category>mcp</category><category>cors</category><category>csrf</category><category>sse</category><category>cross-origin</category><category>data-exfiltration</category></item><item><title>Nhost Local MCP Server Unauthenticated CORS Bypass Leading to Full Project Takeover (CVE-2026-34200)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-34200-nhost-mcp-cors-takeover/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-34200-nhost-mcp-cors-takeover/</guid><description>Critical severity (CVSS 9.6) — web · CVE-2026-34200 (GHSA-6c5x-3h35-vvw2). Status: PoC. Affects: Nhost CLI local MCP server (nhost mcp start). Tags: mcp, cors, csrf, drive-by, cors-bypass, credential-theft, hasura, dns-rebinding.</description><category>web</category><category>Critical</category><category>mcp</category><category>cors</category><category>csrf</category><category>drive-by</category><category>cors-bypass</category><category>credential-theft</category><category>hasura</category><category>dns-rebinding</category></item><item><title>JupyterHub Cross-Origin Form POST XSRF Bypass (CVE-2026-40864)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-40864-jupyterhub-xsrf-bypass/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-40864-jupyterhub-xsrf-bypass/</guid><description>Medium severity — web · CVE-2026-40864 (GHSA-m68r-v472-jgq9). Status: PoC. Affects: JupyterHub. Tags: jupyterhub, csrf, xsrf-bypass, sec-fetch-mode, cwe-352, python, jupyter, session-hijack.</description><category>web</category><category>Medium</category><category>jupyterhub</category><category>csrf</category><category>xsrf-bypass</category><category>sec-fetch-mode</category><category>cwe-352</category><category>python</category><category>jupyter</category><category>session-hijack</category></item><item><title>Joomla Page Builder CK Unauthenticated Arbitrary File Upload RCE — CVE-2026-56290</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-56290-joomla-pagebuilderck-rce/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-56290-joomla-pagebuilderck-rce/</guid><description>Critical severity (CVSS 9.8) — web · CVE-2026-56290. Status: PoC. Affects: Page Builder CK (com_pagebuilderck) — Joomla extension. Tags: joomla, page-builder-ck, com_pagebuilderck, file-upload, unauth-rce, csrf, cms.</description><category>web</category><category>Critical</category><category>joomla</category><category>page-builder-ck</category><category>com_pagebuilderck</category><category>file-upload</category><category>unauth-rce</category><category>csrf</category><category>cms</category></item><item><title>Friendly Functions for Welcart WordPress Plugin CSRF (CVE-2026-1208)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-1208-welcart-plugin-csrf/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-1208-welcart-plugin-csrf/</guid><description>Medium severity (CVSS 4.3) — web · CVE-2026-1208. Status: PoC. Affects: Friendly Functions for Welcart (WordPress plugin). Tags: wordpress, wp-plugin, csrf, welcart, cwe-352, settings-manipulation.</description><category>web</category><category>Medium</category><category>wordpress</category><category>wp-plugin</category><category>csrf</category><category>welcart</category><category>cwe-352</category><category>settings-manipulation</category></item><item><title>diskover-community — CSRF Leading to Authentication Bypass (CVE-2026-38934)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-38934-diskover-community-csrf-authbypass/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-38934-diskover-community-csrf-authbypass/</guid><description>High severity (CVSS 8.8) — web · CVE-2026-38934. Status: PoC. Affects: diskover-community. Tags: diskover, csrf, authentication-bypass, php, elasticsearch, settings-tampering.</description><category>web</category><category>High</category><category>diskover</category><category>csrf</category><category>authentication-bypass</category><category>php</category><category>elasticsearch</category><category>settings-tampering</category></item><item><title>Appsmith Table Widget Stored XSS to Admin Account Takeover — CVE-2026-30862</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-30862-appsmith-stored-xss-privesc/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-30862-appsmith-stored-xss-privesc/</guid><description>Critical severity (CVSS 9.1) — web · CVE-2026-30862 (GHSA-5hw4-whxv-6794). Status: PoC. Affects: Appsmith. Tags: appsmith, stored-xss, csrf, privilege-escalation, xsrf-token, react, low-code.</description><category>web</category><category>Critical</category><category>appsmith</category><category>stored-xss</category><category>csrf</category><category>privilege-escalation</category><category>xsrf-token</category><category>react</category><category>low-code</category></item><item><title>AdminPanel 4.0 CSRF File Deletion / Setup-Mode Reset — CVE-2026-30498</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-30498-adminpanel-csrf/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-30498-adminpanel-csrf/</guid><description>High severity — web · CVE-2026-30498 (reserved by MITRE). Status: PoC. Affects: AdminPanel 4.0 (archived project). Tags: csrf, php, file-deletion, auth-bypass, setup-mode, get-request, adminpanel.</description><category>web</category><category>High</category><category>csrf</category><category>php</category><category>file-deletion</category><category>auth-bypass</category><category>setup-mode</category><category>get-request</category><category>adminpanel</category></item><item><title>Gogs Admin User Edit CSRF to Git Hook RCE</title><link>https://poc.intelseclab.com/pocs/web/2026-07-03_gogs-admin-csrf-git-hook-rce/</link><pubDate>Fri, 03 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-03_gogs-admin-csrf-git-hook-rce/</guid><description>Critical severity — web · None assigned as of 2026-07-03. Status: Weaponized. Affects: Gogs (self-hosted Git service). Tags: gogs, csrf, git-hooks, privilege-escalation, rce, admin-takeover, git, self-hosted.</description><category>web</category><category>Critical</category><category>gogs</category><category>csrf</category><category>git-hooks</category><category>privilege-escalation</category><category>rce</category><category>admin-takeover</category><category>git</category><category>self-hosted</category></item></channel></rss>