Open Redirection in [https://www.hackerone.com/index.php]
None
Vulnerability Details
You are resolved open redirect issue report #439075.This report publicly disclosed.
but this issue again work at this time.
When a user visit http://www.hackerone.com/index.php/index.php.evil.com user will be redirected to www.hackerone.com.evil.com
Steps To Reproduce
Click on this link https://www.hackerone.com/index.php/index.php.evil.com
Redirected to https://www.hackerone.com.evil.com
## Impact
phishing attack to get users to visit malicious sites without realizing it.
Secure hackerone 🙂
Actions
View on HackerOneReport Stats
- Report ID: 562417
- State: Closed
- Substate: resolved
- Upvotes: 32