The tweet mentions an Information Leakage vulnerability where the origin IP of a domain was leaked, and the Cloudflare WAF was bypassed. This could potentially lead to serious security implications. The author is seeking assistance to escalate the findings to high or critical level bugs in a HackerOne public program. It is important to address and fix such vulnerabilities promptly to ensure data security and integrity.
Hey guys,
I am working on an hackerone public program and i found that one of their domain is leaking it's origin IP and I was able to bypass the cloudflare waf can any body help me to escalate some high or critical level bug. We can share the bounty amount.— Sidhant palei (@r00tSid) March 1, 2024