business logic flaw

Disclosed by
AnupamAs01
  • Engagement Asana
  • Disclosed date almost 5 years ago
  • Points 5
  • Priority Unassigned Bugcrowd's VRT priority rating
  • Status Informational This vulnerability is seen as an accepted business risk
Summary by AnupamAs01

I was able to send numerous invites to the victim, which would result in the creation of unnecessary workspaces that could hamper the productivity of the victim thus putting the purpose of this app altogether in question, which was intended to increase productivity by efficiently managing projects of the user.

Activity