Report #32105

Report Date
June 8, 2024

Redirecting users to malicious websites via Host Header Poisoning

Report Info

Immunefi Response

Unfortunately, after reviewing your report, Immunefi has decided to close it due to the assessed impact being out of scope.

Immunefi review:

  • The claimed impact Redirecting users to malicious websites by the whitehat is in the scope of the bug bounty program but the assessed impact doesn't match with the claimed impact for the following reasons.
    • After the review, Triaging determined that the whitehat didn't provided enough information on how the described issue would be used to redirect the users to malicious website as the issue highlighters the modification of the HOST header of the request.
  • assessed asset by the triage team is in scope for the bug bounty program
  • PoC has been submitted to the project

Please note that the project will receive a report of the closed submission and may choose to re-open it, but they are not obligated to do so.