Self XSS on my.indeed.com affecting multiple input fields

Disclosed by
iman122's avatar
iman122
  • Engagement Indeed
  • Disclosed date almost 3 years ago
  • Reward $200
  • Priority P4 Bugcrowd's VRT priority rating
  • Status Resolved This vulnerability has been accepted and fixed
Summary by iman122

Can i disclose it ?

Activity
  1. Kyle_indeed’s avatar
    Kyle_indeed Customer published the disclosure report

    ()

  2. iman122’s avatar
    iman122 requested disclosure

    ()

  3. Jarvis’s avatar
    Jarvis Customer changed the state to Resolved

    ()

  4. cliff_bugcrowd’s avatarbugcrowd logo
    cliff_bugcrowd sent a message

    ()

  5. iman122’s avatar
    iman122 sent a message

    ()

  6. cliff_bugcrowd’s avatarbugcrowd logo
    cliff_bugcrowd resolved a blocker for Indeed by responding to comments

    ()

  7. cliff_bugcrowd’s avatarbugcrowd logo
    cliff_bugcrowd sent a message

    ()

  8. Kyle_indeed’s avatar
    Kyle_indeed Customer created a blocker on Bugcrowd Operations to respond to comments

    ()

  9. iman122’s avatar
    iman122 sent a message

    ()

  10. Kyle_indeed’s avatar
    Kyle_indeed Customer changed the state to Unresolved

    ()

  11. Kyle_indeed’s avatar
    Kyle_indeed Customer rewarded iman122 5 points

    ()

  12. Kyle_indeed’s avatar
    Kyle_indeed Customer rewarded iman122 $200

    ()

  13. Kyle_indeed’s avatar
    Kyle_indeed Customer sent a message

    ()

  14. cliff_bugcrowd’s avatarbugcrowd logo
    cliff_bugcrowd sent a message

    ()

  15. cliff_bugcrowd’s avatarbugcrowd logo
    cliff_bugcrowd updated the submission

    ()

  16. cliff_bugcrowd’s avatarbugcrowd logo
    cliff_bugcrowd changed the state to Triaged

    ()

  17. cliff_bugcrowd’s avatarbugcrowd logo
    cliff_bugcrowd changed the severity to P4

    ()

  18. cliff_bugcrowd’s avatarbugcrowd logo
    cliff_bugcrowd updated VRT to Cross-Site Scripting (XSS) > Reflected > Self

    ()

  19. iman122’s avatar
    iman122 resolved a blocker for Indeed by responding to comments

    ()

  20. iman122’s avatar
    iman122 sent a message

    ()

  21. cliff_bugcrowd’s avatarbugcrowd logo
    cliff_bugcrowd created a blocker on the researcher to respond to comments

    ()

  22. cliff_bugcrowd’s avatarbugcrowd logo
    cliff_bugcrowd sent a message

    ()

  23. iman122’s avatar
    iman122 created the submission

    ()