callback-validation

1 article
sort: new top best
clear filter
0 7/10

A researcher discovered a chain of vulnerabilities in OneDrive OAuth integration: loose redirect_uri validation accepting partial path matches combined with a CSRF-vulnerable API callback endpoint (/api/testCallback?callback_url=) allowed stealing OAuth authorization codes and access tokens from authenticated users.

OneDrive Microsoft login.live.com Arbaz Hussain HackerOne
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 20 hours ago · details