Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open redirect bug issue [ gruntjs.com ] #221

Open
dipuhasan opened this issue Sep 14, 2021 · 0 comments
Open

Open redirect bug issue [ gruntjs.com ] #221

dipuhasan opened this issue Sep 14, 2021 · 0 comments

Comments

@dipuhasan
Copy link

Hi,

gruntjs.com is vulnerable to open redirect issue, that leads to victim redirecting to unwanted phishing or malicious web pages.

Vulnerable url:
https://gruntjs.com//example.com/

Steps to reproduction :
1 : Add any url after slash / endpoint
2 : While users visit the above url they will get redirected.
https://gruntjs.com//evil.com/

Thanks!

NB: Do you have bug bounty?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant