Private Program Disclosure in /:handle/settings/allow_report_submission.json endpoint

Disclosed: 2016-02-24 23:49:33 By charfee To security
Unknown
Vulnerability Details
Hi ██████████==> private externa bb https://hackerone.com/settings/allow_report_submission.json?team_handle=security when u get False or true thry mean its valide bb when u get 404 its invalid
Actions
View on HackerOne
Report Stats
  • Report ID: 116798
  • State: Closed
  • Substate: resolved
  • Upvotes: 5
Share this report