I recently came across a bug bounty program that taught me how to exploit CORS Vulnerability, it was a great learning curve
I had managed to create a Proof of Concept exploit which can be found on my Github Repository you can have a look at it by clicking on the button below