XSSI on refer.xoom.com allows stealing email addresses and posting to Twitter on behalf of victim

Disclosed: 2019-02-07 23:25:32 By alexbirsan To paypal
Medium
Vulnerability Details
No vulnerability description provided or it is restricted.
Actions
View on HackerOne
Report Stats
  • Report ID: 450796
  • State: Closed
  • Substate: resolved
  • Upvotes: 75
Share this report