Cross-Site Request Forgery (CSRF) is an attack that forces an end user to execute unwanted actions on a web application in which they’re currently authenticated. … If the victim is an administrative account, CSRF can compromise the entire web application.
Introduction to CSRF ( Cross-Site Request Forgery )
CSRF ( Cross-Site Request Forgery ) bug hunting on live websites
How to report CSRF ( Cross-Site Request Forgery ) vulnerability