Reflected XSS on secure.chaturbate.com
High
C
Chaturbate
Submitted None
Team Summary
Official summary from Chaturbate
The hacker found that an external asset used for fraud detection on secure.chaturbate.com was not sanitizing input parameters and could be used for reflected XSS. This external asset was removed.
Actions:
Reported by
glc
Report Details
Additional information and metadata
State
Closed
Substate
Resolved
Bounty
$800.00
Submitted
Weakness
Cross-site Scripting (XSS) - Reflected