Reflected XSS { support.mycrypto.com }
Medium
M
MyCrypto
Submitted None
Team Summary
Official summary from MyCrypto
A reflected XSS was reported by sup3r-b0y that was activated by displaying unsanitized values of query parameters. The MyCrypto team worked with sup3r-b0y to identify and verify the fix, and are happy to confirm that the vulnerability described in the report has now been fixed. We are happy to continue to work with the HackerOne community to determine and resolve issues on an ongoing basis. A big thank you to sup3r-b0y for their help in identifying and resolving this issue!
Actions:
Reported by
sup3r-b0y
Report Details
Additional information and metadata
State
Closed
Substate
Resolved
Submitted
Weakness
Cross-site Scripting (XSS) - Reflected