This submission has been redacted by the customer

Disclosed by
borayalcin
  • Engagement 1Password
  • Disclosed date over 4 years ago
  • Points 5
  • Priority Unassigned Bugcrowd's VRT priority rating
  • Status Informational This vulnerability is seen as an accepted business risk
Summary by 1Password

We noted an issue with how our billing system processes new illegitimate credit cards, that could be used to temporarily avoid payment on active accounts. We looked into the issue, but considered that fixing the issue would impact legitimate users too much.

Summary by borayalcin

Low severity business logic vulnerability.

Activity