Flickr API key leaked in GitHub commit

Disclosed: 2023-10-26 08:30:24 By m4y4nk To mozilla
Low
Vulnerability Details
Hello security team, My Name is Mayank Kumar. I am a Cyber Security Researcher, Bug Bounty Hunter & Ethical Hacker. While going through Github search I discovered a public repository which contains API Key. Repo: https://github.com/mozilla/make.mozilla.org File: https://github.com/mozilla/make.mozilla.org/blob/98b87c517b463a5bae09f29284b1dabca97bb376/media/js/flickr.js#L4 POC: Screenshot Attached ## Impact Information Disclosure
Actions
View on HackerOne
Report Stats
  • Report ID: 1992261
  • State: Closed
  • Substate: resolved
  • Upvotes: 18
Share this report