LinkedIn - HackerOne Reports
View on HackerOne45
Total Reports
3
Critical
8
High
24
Medium
7
Low
Ad Account Takeover
Reported by:
them4les_l1r
|
Disclosed:
Critical
Weakness: Privilege Escalation
Campaign Account Balance and History Disclosed in API Response
Reported by:
sachin_kr
|
Disclosed:
Medium
Weakness: Insecure Direct Object Reference (IDOR)
A Unverified User Can Post Newsletter (Which Is Not Allowed Through Application UI)
Reported by:
tushar6378
|
Disclosed:
Low
Weakness: Business Logic Errors
Attackers do not need to Pay for a Subscription to get the `Discussion Group URL` in `Paid Learning`
Reported by:
find_me_here
|
Disclosed:
Medium
Weakness: Insecure Direct Object Reference (IDOR)
Attackers can use TRIAL Premium only by paying **IDR 10,000.00** from the original price of `IDR462,400.00` per month
Reported by:
find_me_here
|
Disclosed:
High
Weakness: Insecure Direct Object Reference (IDOR)
Previous
Page 3 of 3