media-deletion

1 article
sort: new top best
clear filter
0 5/10

A CSRF vulnerability in Instagram's copyright dispute feature allowed attackers to delete users' media via a simple GET request to an unauthenticated endpoint, exploitable through social engineering. The vulnerability was discovered in January 2019 and patched within days, with a $3,000 bounty awarded.

Instagram Facebook Pouya $3,000
blog.darabi.me · devanshbatham/Awesome-Bugbounty-Writeups · 14 hours ago · details