What MITRE CAPEC-62: Cross-Site Request Forgery (CSRF) (Attack Pattern - Very High Severity) requires
MITRE CAPEC-62 (Cross-Site Request Forgery) is an attack pattern in which an attacker crafts malicious web links to induce users to click and execute malicious actions against third-party applications. Leverages session cookies persisting after authentication. Likelihood: High. Severity: Very High. Maps to CWE-352 (CSRF), CWE-306 (Missing Authentication for Critical Function), CWE-664, CWE-732, CWE-1275 (Sensitive Cookie with Improper SameSite Attribute). Compliance: OWASP ASVS V4.2 Session Management, OWASP Top 10 A01, PCI DSS, NIS2.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://capec.mitre.org/data/definitions/62.html
SHA-256 integrity: fee00c1ea3cd8b7e446ab1067cc00d7dcfa6463a1db8c4d18f668c67a3f878aa
Primary Citations — 8 traced to source
- MITRE CAPEC-62: Cross-Site Request Forgery (CSRF) (https://capec.mitre.org/data/definitions/62.html)
- CWE-352: Cross-Site Request Forgery (CSRF)
+ 6 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.