CSRF Token Mismatch

212 views
Skip to first unread message

Naman Sharma

unread,
Jul 11, 2022, 8:54:06 AM7/11/22
to OWASP ZAP User Group
Hi guys,

After submitting the post request I am getting response code 419 with error message "CSRF token mismatch". Application is using XSRF-Token cookie.

Please let me know how to solve this.
thanks in advance

Simon Bennetts

unread,
Jul 13, 2022, 8:59:51 AM7/13/22
to OWASP ZAP User Group
Have you defined this as an Anti CSRF token?
When are you getting the error? When manually exploring your app, spidering, active scanning??

Cheers,

Simon

Naman Sharma

unread,
Jul 13, 2022, 11:14:20 AM7/13/22
to OWASP ZAP User Group
Hi, 
Hello, Yes, I mentioned it in the Anti-CSRF token. In the spider, I got this error each time but in the case of the manual, I could connect. When I checked the error response, it's showing "XSRF-token mismatch" 
Reply all
Reply to author
Forward
0 new messages