HackerOne Disclosed Reports - 2026-03-24

0 Replies, 43 Views

Logo
High
resolved

Potential Subdomain Takeover on IBM.com domain.


Bug reported by Alchemist was disclosed at March 24, 2026, 3:25 pm   |   Improper Access Control - Generic

A potential subdomain takeover vulnerability on an IBM.com domain was reported and remediated. The vulnerability was analyzed and addressed by IBM.


Logo
Medium
resolved

Access to Deactivated LinkedIn Company Pages via Competitor Analytics API


Bug reported by RiadCyber was disclosed at March 24, 2026, 10:31 am   |   Insecure Direct Object Reference (IDOR)

A vulnerability was discovered in LinkedIn's Competitor Analytics API that permitted authenticated users to access analytics data for deactivated company pages.


[Image: e72398fe92beda2aa80d0329e8b9f4febece7568.gif]



Users browsing this thread: 1 Guest(s)