dr.d3v1l Posted September 10, 2015 Author Report Posted September 10, 2015 Hello,Thank you for reporting this issue to the Microsoft Security Response Center (MSRC). Self-XSS is not considered a security vulnerability as it requires social engineering.Please see the following for more information: "Definition of a Security Vulnerability" <https://msdn.microsoft.com/en-us/library/cc751383.aspx> "Online Services Bug Bounty Terms" <https://technet.microsoft.com/en-us/security/dn800983>Thanks, @n3curatu Quote
1337 Posted September 10, 2015 Report Posted September 10, 2015 Sunt foarte muisti cei de la Microsoft la fazele de genul, cred ca am peste trei self-uri raportate si la toate am primit raspunsul standard, in primul rand vulnerabilitatea nu trebuia sa fie acolo, nu inteleg de ce catalogheaza self-urile ca low risk si priority. Quote