HackerOne Disclosed Reports - 2025-08-15

0 Replies, 238 Views

Logo
High
resolved

Internal Access to Hackerone confluence Docs


Bug reported by was disclosed at August 15, 2025, 3:30 pm   |   Misconfiguration

The vulnerability allowed external access to HackerOne's internal Confluence documentation through a support system misconfiguration. This configuration issue granted the ability to view and modify limited content within the Confluence instance.


Logo
Low
resolved

Rails Debug Mode Enabled On ( https://44.208.145.207/testrail/files.md5 )


Bug reported by Hackwithskills was disclosed at August 15, 2025, 2:24 pm   |  

Summary:

A Ruby on Rails web application running in development mode was identified on a Malwarebytes server. This exposed sensitive system information, including details about middleware components and application root paths, which should not have been accessible in a production environment.


[Image: e72398fe92beda2aa80d0329e8b9f4febece7568.gif]

Messages In This Thread
HackerOne disclosed reports - 2025-08-15 - by hashXploiter - 08-16-2025, 12:30 PM



Users browsing this thread: 1 Guest(s)