writeups.xyz writeups.xyz / Cross-Site WebSocket Hijacking (CSWH)

Title Vulnerabilities Programs Authors
CSWSH Meets LLM Chatbots
MeshCentral Cross-Site Websocket Hijacking Vulnerability (CVE-2024-26135)
Excessive Expansion: Uncovering Critical Security Vulnerabilities in Jenkins (CVE-2024-23897 & CVE-2024-23898)
Rendezvous with a Chatbot: Chaining Contextual Risk Vulnerabilities
Gitpod remote code execution 0-day vulnerability via WebSockets
[socket.io] Cross-Site Websockets Hijacking
Peeping through a Web-Socket
‘Websocket Hijacking’ to steal Session_ID of victim users
Multiple Vulnerabilities In cPanel/WHM
Cross-Site Websocket Hijacking bug in Facebook that leads to account takeover
Account Takeover Using Cross-Site WebSocket Hijacking (CSWH)