Page 1 of 1

incorrect treatment of variables that generate queries that are extremely heavy to the point that they can cause DoS

Posted: Thu Feb 11, 2021 12:41 pm
by jb4ckstr33t
Hi there,

I would like to know how can I report incorrect treatment of variables that generate queries that are extremely heavy to the point that they can cause DoS.

I know that DoS is not normally in the scope of the bounty bug, but remains a threat that could harm the company, so what is the correct and ethical way to report this?

I'm not using an automatic application even not sending a lot of protocols, just working with variables that are in the URL address.

Can someone give me a support about how can I report it correctly?

Thanks