Anima vulnerable to subdomain takeover
TakSec opened this issue · 1 comments
TakSec commented
Service name
Anima - https://www.animaapp.com/
Proof
Created a PoC for a bug bounty report and it worked without any issues.
Documentation
A Record:
subdomain.domain.com. 600 IN A 35.164.217.247
Error page:
Missing Website
If this is your website and you've just created it, try refreshing in a minute
https://docs.animaapp.com/v1/launchpad/08-custom-domain.html
EdOverflow commented
Thank you, @TakSec. 👍