HackerOne Bug Bounty Disclosure: sign-in-with-apple-generates-long-life-jwts,-seemingly-irrevocable,-that-grant-immediate-access-to-accountsbymattipv4
Programme
HackerOne
- Cloudflare Public Bug Bounty
Submitted by
- mattipv4
Report
Sign in with Apple generates long-life JWTs, seemingly irrevocable, that grant immediate access to accounts