webProeasy

Lab 217 — PlanForge — Broken Authorization in Subscription Upgrade

hackadvisor

Task: SaaS platform with subscription tiers (Free/Pro/Enterprise), billing API exposes plan data. Solution: Queried /api/plans endpoint directly, discovered hidden internal plan with is_public:0 containing the flag in description field.

$ ls tags/ techniques/
api_enumerationjavascript_source_analysishidden_resource_discoveryis_public_filter_bypass

🔒

Permission denied (requires tier.pro)

Sign in to access full writeups

Sign in with GitHub to continue. No email required.

$sign in

$ grep --similar

Similar writeups