Published On: 12 Jul 2021
Q: Who can be affected by this issue? A: Anyone. Q: Why is this a problem? A: This can be abused to redirect users to any harmful website.
Attacker could redirect any Victim to a desired malicious website / banned website like (evilzone.org).
Step
1
Open Facebook with Google Chrome or Chrome for Android.
Step
2
Go to https://m.facebook.com/messagingconfirmation?action_url=https://evilzone.org .
Step
3
Click Delete
Step
4
That's it :)
Windows 10 Google Chrome 87.0.4280.141 (64 bit) P.S: This wont work on Safari or other Browsers.