CVE-2018-25363

Twitter-Clone 1 contains a cross-site request forgery vulnerability that allows remote attackers to force victims to delete posts by crafting malicious HTML forms. Attackers can create hidden forms targeting tweetdel.php with tweet IDs and automatically submit them to delete arbitrary posts from authenticated user sessions.
Configurations

No configuration.

History

25 May 2026, 15:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-25 15:16

Updated : 2026-06-17 01:55


NVD link : CVE-2018-25363

Mitre link : CVE-2018-25363

CVE.ORG link : CVE-2018-25363


JSON object : View

Products Affected

No product.

CWE
CWE-352

Cross-Site Request Forgery (CSRF)