protected Tweet settings overwritten by other settings

Disclosed: 2020-01-01 16:37:18 By jaka-tingkir To x
Medium
Vulnerability Details
protected tweet settings will be disabled without the account owner's knowledge ## step for reproduction 1.Log in to an account with unprotected tweets on the Android app. 2. Log in to the same account on mobile.twitter.com and turn on protected tweets. 3. Confirm that the account's tweets are protected. 4. In the Android app, go to the NOTIFICATION the click for ON 5. The account's tweets are now unprotected. ==I have deleted all data (stored data and cache), so you don't need to save any cache or history!== ## Impact your tweet not protected
Actions
View on HackerOne
Report Stats
  • Report ID: 664038
  • State: Closed
  • Substate: resolved
  • Upvotes: 174
Share this report