@Bugcrowd wait … is this ssrf? Since the domain is end https://t.co/lcL4kYNmcY, so attack can just use subdomain like https://t.co/fEEoeTTYNE to bypass the logic as the code stated that only throw the exception when the suffix name of the domain end with https://t.co/lcL4kYNmcY
@ihtesham2005 No worry....Regardless how good a Chinese AI is doing...There will be always people who will find a flaw (if don't find an. create one) politicize it