User can be fooled to Bookmark any restaurant by clickjacking

Disclosed: 2017-11-09 19:58:23 By na5ne3t To yelp
Low
Vulnerability Details
In this report https://hackerone.com/reports/214087 you people said the clickjacking issue is fixed but i have found another issue of clickjacking. Using clickjacking attacker can fooled an user to bookmark n numbers of restuarants. I am attaching a PoC video , watch the video.
Actions
View on HackerOne
Report Stats
  • Report ID: 228295
  • State: Closed
  • Substate: informative
Share this report