business-logic-bypass

1 article
sort: new top best
clear filter
0 5/10

A race condition vulnerability in a team management feature allows bypassing the free plan's 5-user invitation limit by sending simultaneous requests through Burp Intruder, enabling attackers to invite 22+ users without upgrading to a paid plan.

Arbaz Hussain
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 23 hours ago · details