7 ms·Combination of XSS and CSRF.by unfed 13y agoCombination of XSS and CSRF.benregenspan 13y agoThis seems like it's just plain XSS - it doesn't take advantage of a user's serverside session to forge an action on their behalf.