HackerOne Disclosed Reports - 2025-11-24

0 Replies, 134 Views

Logo
Medium
resolved

High resource consumption by insufficient sanitization of forum threads pagination


Bug reported by maskopatol was disclosed at November 24, 2025, 10:33 pm   |   Allocation of Resources Without Limits or Throttling

The forum threads pagination functionality was insufficiently sanitized, leading to high resource consumption. When a page number was provided in the URL that exceeded the number of available pages, an infinite loop was triggered, generating excessive markup on each iteration. The issue was resolved by correcting the logic to avoid generating links to non-existent pages.


[Image: e72398fe92beda2aa80d0329e8b9f4febece7568.gif]

Messages In This Thread
HackerOne disclosed reports - 2025-11-24 - by hashXploiter - 11-25-2025, 12:30 PM



Users browsing this thread: 1 Guest(s)