Cross-Tenant IDOR ( graphql `AddRulesToPixelEvents` query ) allowing to add, update, and delete rules of any Pixel events on the platform

Disclosed: 2021-04-02 21:17:22 By freesec To tiktok
High
Vulnerability Details
No vulnerability description provided or it is restricted.
Actions
View on HackerOne
Report Stats
  • Report ID: 984965
  • State: Closed
  • Substate: resolved
  • Upvotes: 74
Share this report