Looking to speak with OBS developer team. I have found a vulnerability on OBS Studio 30.2.3 Windows Executable

atemporalzen

New Member
Hello there,

I have recently found a vulnerability on the latest version of OBS Studio Windows Executable. It is a Local File Inclusion vulnerability. How should I responsibly disclose this vulnerability and get it patched?

Thanks,
zen
 

R1CH

Forum Admin
Developer
LFI is a web application vulnerability, so this seems unlikely to apply to OBS. If you're referring to what the browser source can do, this is generally out of scope as only trusted sites are intended to be loaded in the browser source, it is not meant for regular web browsing.

You can send details to security at obsproject.com.
 
Last edited:
Top