logical-vulnerability

1 article
sort: new top best
clear filter
0 7/10

A bug bounty writeup demonstrating how multiple vulnerabilities (CORS misconfiguration, open redirect, XSS, session non-invalidation, and logical bugs) were chained together to achieve full account takeover and steal user data including email addresses, discount codes, and purchase history.

Mashoud1122 HackerOne
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 22 hours ago · details