http-redirect-following

1 article
sort: new top best
clear filter
0 8/10

A researcher discovered an SSRF vulnerability in Vimeo's API Playground by chaining path traversal in user-controlled URL variables with an open redirect to escape the api.vimeo.com domain, ultimately leveraging the Google Cloud metadata API to extract service account tokens with compute, logging, and storage scopes.

Vimeo Harsh Jaiswal Google Cloud André Baptista Brett (bbuerhaus) HackerOne Google Compute API Kubernetes
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 18 hours ago · details