Logic Flaw: Deleting HackerOne Team Reports Without Access Rights

Image

How a GraphQL Mutation Allowed Unauthorized Report Deletion Across Teams

[Continue reading on InfoSec Write-ups »](https://infosecwriteups.com/logic-flaw … ⌘ Read more

⤋ Read More