Open Url redirection on login with facebook

Disclosed: 2015-12-09 17:55:15 By d1pakda5 To imgur
Unknown
Vulnerability Details
steps to produce: 1, go to the site imgur.com and login with facebook and if you are new user then u must be asked for username on the link https://imgur.com/register/thirdparty/facebook?redirect=http://imgur.com/ nw just change the parameter redirect= value to https://google.com and hit enter and give username and click next and you will redirected to google Regards Dipak
Actions
View on HackerOne
Report Stats
  • Report ID: 91332
  • State: Closed
  • Substate: informative
  • Upvotes: 2
Share this report