I've discovered a security flaw in the HubSpot APIs and would like to know the best way to report it. It's a serious issue. Has anyone had experience reporting security issues to HubSpot?
I've already submitted a report through the Bugcrowd portal, but I haven't seen any progress there.
If you have a paid HubSpot account, the quickest way to get this addressed might be to contact our direct support team. They handle urgent issues and can escalate security matters appropriately.
Alternatively, please do share all the details with me via DM. Include any relevant information like specific API endpoints, steps to reproduce the issue, screenshots, and any other supporting evidence you have. You can provide it all directly to me, and I will make sure to pass it along internally to the appropriate team.
Thanks!
Diana
HubSpot’s AI-powered customer agent resolves up to 50% of customer queries instantly, with some customers reaching up to 90% resolution rates. Learn More.