Skip to content

[SECURITY] Business Logic Vulnerability in Donation System #2039

@sermikr0

Description

@sermikr0

⚠️ SECURITY ISSUE - PRIVATE DISCLOSURE REQUESTED

Hi @causefx,

I've discovered a security vulnerability in the donation system.

Summary:

  • Vulnerability: Payment amount manipulation
  • Severity: MEDIUM (CVSS 5.3)

Request:
Can we discuss privately? I have full analysis and fixes.

Contact: [email protected]

Metadata

Metadata

Assignees

No one assigned

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions