User can Subscribe a plan that is hidden by manipulating the value of "subscription" parameter at [ https://app.dropcontact.io/app/checkout/]

Disclosed: 2020-08-07 13:29:09 By xploiterr To dropcontact
Medium
Vulnerability Details
No vulnerability description provided or it is restricted.
Actions
View on HackerOne
Report Stats
  • Report ID: 947982
  • State: Closed
  • Substate: resolved
  • Upvotes: 2
Share this report