A Flask application (login admin/admin) whose /confidential page holds private data and answers cross-origin requests with credentials allowed.
Not startedDockercommit 596f3f4x86_64 · aarch64Secret
Read the logged-in victim's confidential data from a page on another origin by abusing the CORS policy.
The brief for this lab lives in its repository.