99Taxis / corp-api-v2-documentation

8 stars 3 forks source link

Security report update #24

Open nvk0x opened 3 weeks ago

nvk0x commented 3 weeks ago

Hi,

I have reported an High severity security vulnerability related to this repository on DiDi Labs Hackerone Bug Bounty program on 14th may 2024. But no response from DiDi Labs security team till now. Here is the report link

Please check the report.

rodoc commented 3 weeks ago

Hello

I worked at Didi until 2019, but they not canceled my repository credentials, since then, sometimes they requisitioned my software engineer services relative a several things, i not saw any things about this question yet because nobody contacted me, don't have enough access to deploy any fix, if someone of Didi read this email, if have interest, i can resolve.

So…Thats simple…

Att,

Rodrigo Otávio

On Mon, 24 Jun 2024 at 10:12 AM Naveen @.***> wrote:

Hi,

I have reported an High severity security vulnerability related to this repository on DiDi Labs Hackerone https://hackerone.com/didilabs Bug Bounty program on 14th may 2024. But no response from DiDi Labs security team till now. Here is the report link https://hackerone.com/reports/2504791

Please check the report.

— Reply to this email directly, view it on GitHub https://github.com/99Taxis/corp-api-v2-documentation/issues/24, or unsubscribe https://github.com/notifications/unsubscribe-auth/ADVBWUZ4ARTAA4H75FZ7RZTZJALLZAVCNFSM6AAAAABJZZYUVKVHI2DSMVQWIX3LMV43ASLTON2WKOZSGM3TAMRSGQ2DQOI . You are receiving this because you are subscribed to this thread.Message ID: @.***>