BugCrowd Bug Bounty Disclosure: P4 - NASA NLSP API discloses internal usernames and system role mappings to unauthenticated users - c3L0Mu1d3R - https://www.redpacketsecurity.com/bugcrowd-bugbounty-disclosure-nasa-nlsp-api-discloses-internal-usernames-and-system-role-mappings-to-unauthenticated-users/
#BugCrowd #BugBounty #Vulnerability #OSINT #ThreatIntel #Cyber
BugCrowd Bug Bounty Disclosure: P4 - NASA NLSP API discloses internal usernames and system role mappings to unauthenticated users - c3L0Mu1d3R - RedPacket Security
A public API endpoint on the NASA NLSP domain discloses internal user identifiers, usernames, and detailed role/group assignments without requiring