Loading HuntDB...

Reflected XSS on secure.chaturbate.com

High
C
Chaturbate
Submitted None

Team Summary

Official summary from Chaturbate

The hacker found that an external asset used for fraud detection on secure.chaturbate.com was not sanitizing input parameters and could be used for reflected XSS. This external asset was removed.

Reported by glc

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Bounty

$800.00

Submitted

Weakness

Cross-site Scripting (XSS) - Reflected