Info: The email change/SMS login... function on this page is vulnerable to CSRF. It tries to block CSRF attacks, but only applies defenses to certain types of requests. Example of CSRF in image:
![[Image: CSRF-Attack-Okta.png]](https://kinsta.com/wp-content/uploads/2022/11/CSRF-Attack-Okta.png)
![[Image: CSRF-Attack-Okta.png]](https://kinsta.com/wp-content/uploads/2022/11/CSRF-Attack-Okta.png)
Ban reason: Account compromised contact to resolve (Permanent)