Page 1 of 1

Program Member Could Duplicate Report To A Non Related Program Original Report

Posted: Mon Jan 13, 2025 4:29 am
by Shane1145
A researcher found a vulnerability on setting duplicate report as program owner. He was able to duplicate a report to a report that doesn't have relation with the program. For example we can duplicate to a public report in hacktivity.



https://hackerone.com/reports/2513082