fetch-api

1 article
sort: new top best
clear filter
0 8/10

A researcher discovered a critical code injection vulnerability in a custom JavaScript-based macro language (Banan++) through an unsafe eval() call in the Union() function, which allowed execution of arbitrary JavaScript on the server. By injecting fetch() calls through an API parameter, they exploited this to extract AWS credentials and achieve complete account compromise (20 S3 buckets and 80 EC2 instances).

ArticMonkey Banan++ Gwendal Le Coguic Hackerone AWS ReactJS NodeJS
10degres.net · devanshbatham/Awesome-Bugbounty-Writeups · 19 hours ago · details