Server Side Forgery worth $4,913 on Dropbox

On First Glance , Dropbox Program looked very interesting to me as it was having best payout and good response time , so I choose to hunt on Hellosign mentioned on Dropbox Bug Bounty Program’s Policy.

I started hunting on main application at , I found that there was a feature of importing document from Dropbox , GDrive , BOX , OneDrive , EverNote.

This post was created with our nice and easy submission form. Create your post!

What do you think?

Posted by SH

Leave a Reply

Your email address will not be published. Required fields are marked *

GIPHY App Key not set. Please check settings

Exploiting a Use-After-Free for code execution in every version

Cobalt Strike 4.7: The 10th Anniversary Edition