Cross-site request forgery, also known as a one-click attack or session riding and abbreviated as CSRF (sometimes pronounced sea-surf) or XSRF, is a type of malicious exploit of a website whereby unauthorized commands are transmitted from a user that the website trusts. Unlike cross-site scripting (XSS), which exploits the trust a user has for a particular site, CSRF exploits the trust that a site has in a user's browser. 
so here is our new vulnerability
dp1.jpg (355×246)
in This vulnerability we can show our message Like "Hacked By XYZ" on a particular websites by adding text in url,
see for example :
You can simple chnage  hacked%20by%20XYZ%20 with your own name to show your message on !!
