• 0 Posts
  • 299 Comments
Joined 2 years ago
cake
Cake day: July 26th, 2023

help-circle











  • That password reset looked to be like step four of something. So it’s a business logic bypass. Still awful of course but slightly more understandable given other ways this vulnerability could have been introduced. The cool part was detecting all the steps completely blackbox because everything was in the Javascript.

    There is no excuse for issuing a valid token before mfa succeeds though. That is negligent.