writeups.xyz writeups.xyz / Vivek M

Title Vulnerabilities Programs Authors
IDOR on bitdefender.com
Custom role details are exposed in Google groups.
IDOR allows to assign deleted tasks to other members in Google Chat Space
Source code leakage due to exposed sourcemap
User names and email addresses are exposed to unprivileged admins in the Google Marketing Platform
Users of other organizations can be confirmed on the Google Marketing Platform - User enumeration Error based
The space creators can still see the members of the space, even after they have been removed from the space.
Details about future collaboration profiles and pages have been revealed
Group expert's pending expertise request leaking on Facebook
IDOR leads to removing members from any Google Chat Space.