Bug Bounty

HackerOne Bug Bounty Disclosure: moderate-apache-http-server-mod-rewrite-proxy-handler-substitution-cve-cwe-improper-input-validation-orange

Company Name: Internet Bug Bounty Company HackerOne URL: https://hackerone.com/ibb Submitted By:orangeLink to Submitters Profile:https://hackerone.com/orange Report Title:moderate: Apache HTTP Server: mod_rewrite...

HackerOne Bug Bounty Disclosure: leaking-usernames-through-endpoints-wordpress-alitoni

Company Name: MTN Group Company HackerOne URL: https://hackerone.com/mtn_group Submitted By:alitoni224Link to Submitters Profile:https://hackerone.com/alitoni224 Report Title:Leaking usernames through endpoints WordpressReport Link:https://hackerone.com/reports/1785021Date...

HackerOne Bug Bounty Disclosure: idor-lets-a-malicious-user-reveal-the-unpinned-achievement-badges-of-any-reddit-user-saurabhb

Company Name: Reddit Company HackerOne URL: https://hackerone.com/reddit Submitted By:saurabhbLink to Submitters Profile:https://hackerone.com/saurabhb Report Title:IDOR lets a malicious user reveal the...

HackerOne Bug Bounty Disclosure: permissions-can-be-bypassed-via-arbitrary-code-execution-through-abusing-libuv-signal-pipes-xion

Company Name: Node.js Company HackerOne URL: https://hackerone.com/nodejs Submitted By:xionLink to Submitters Profile:https://hackerone.com/xion Report Title:Permissions can be bypassed via arbitrary code...

HackerOne Bug Bounty Disclosure: unauthenticated-full-read-ssrf-via-twilio-integration-mokusou

Company Name: Rocket.Chat Company HackerOne URL: https://hackerone.com/rocket_chat Submitted By:mokusouLink to Submitters Profile:https://hackerone.com/mokusou Report Title:Unauthenticated full-read SSRF via Twilio integrationReport Link:https://hackerone.com/reports/1886954Date...

HackerOne Bug Bounty Disclosure: exposure-of-shopify-employee-summit-page-allows-anonymous-user-to-place-orders-for-free-books-g-lden

Company Name: Shopify Company HackerOne URL: https://hackerone.com/shopify Submitted By:g0lden1Link to Submitters Profile:https://hackerone.com/g0lden1 Report Title:Exposure of shopify employee summit page allows...

HackerOne Bug Bounty Disclosure: non-org-admin-group-manager-can-create-groups-in-an-organization-akashhamal-x

Company Name: HackerOne Company HackerOne URL: https://hackerone.com/security Submitted By:akashhamal0x01Link to Submitters Profile:https://hackerone.com/akashhamal0x01 Report Title:Non Org Admin/Group Manager can create groups...