Facebook flaw could have allowed an attacker to hijack accounts

The CSRF bypass flaw has now been fixed, and the researcher who discovered it has netted $25,000.

from Naked Security http://bit.ly/2T5CPIb
via IFTTT