Cross-site request forgery (CSRF) vulnerability in LIQUID SPEECH BALLOON versions before 1.2 allows a remote unauthenticated malicious user to hijack the authentication of a user and to perform unintended operations by having a user view a malicious page.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
lqd liquid speech balloon |