Leaking Referrer in Reset Password Link

Disclosed: 2014-04-12 03:46:10 By cliantech To irccloud
Unknown
Vulnerability Details
I have found that you are leaking via the referrer the reset password link. I am attaching the photo as proof of concept that the site is indeed leaking the reset password link via the referrer. Thats when someone loads the reset password link and decided to click on external links. Its the time the referrer is leak ( see attached photo ) Clifford Trigo
Actions
View on HackerOne
Report Stats
  • Report ID: 6884
  • State: Closed
  • Substate: resolved
  • Upvotes: 3
Share this report