Public
C2FO
bug reports.
4,419
Bug Reports -
$2,030,173
Paid Out
Last Updated:
12th September, 2017
Team
Bounty
Title
C2FO
-
[admin.c2fo.com] Open Redirect
C2FO
-
All Active user sessions should be destroyed when user change his password!
C2FO
-
The server supports only older protocols for HTTPS connections
C2FO
-
c2fo.com is releasing sensitive Information about Database Configuration.
C2FO
-
Password reset token leakage through referrer at https://app.c2fo.com/password/reset/
C2FO
-
User guessing/enumeration at https://app.c2fo.com/api/password-reset
C2FO
-
OPTIONS Method Enabled