HackerOne Bug Bounty Disclosure: cve-out-of-bounds-read-for-cookie-path-bigsleep