No rate Limit on Add new Translation Project

Disclosed: 2021-06-21 15:07:38 By deathpoolxrs To weblate
Unknown
Vulnerability Details
Attacker able to create unlimited Translation projects which lead to no more project name for the users who wanted to create new project on hosted.weblate.org Below is the POC video which ,you can go through ## Impact Other users cant use the project names there wanted and attacker can occupy space where the project are stored
Actions
View on HackerOne
Report Stats
  • Report ID: 1238749
  • State: Closed
  • Substate: resolved
  • Upvotes: 8
Share this report