HackerOne Bug Bounty Disclosure: account-takeover-via-password-reset-without-user-interactions-asterion

Company Name:
GitLab

Company HackerOne URL:
https://hackerone.com/gitlab

Submitted By:
asterion04

Link to Submitters Profile:
https://hackerone.com/asterion04

Report Title:
Account Takeover via Password Reset without user interactions

Report Link:
https://hackerone.com/reports/2293343

Date Submitted:
26 February 2025

A considerable amount of time and effort goes into maintaining this website, creating backend automation and creating new features and content for you to make actionable intelligence decisions. Everyone that supports the site helps enable new functionality.

If you like the site, please support us on “Patreon” or “Buy Me A Coffee” using the buttons below

To keep up to date follow us on the below channels.