Bug Bounty

HackerOne Bug Bounty Disclosure: moderators-can-send-messages-to-users-from-banned-subreddits-via-`oauth-reddit-com/api/mod/conversations`byzqyzoid

Programme HackerOne Reddit Reddit Submitted by zqyzoid zqyzoid Report Moderators can send messages to users from banned subreddits via `oauth.reddit.com/api/mod/conversations`...

HackerOne Bug Bounty Disclosure: http-request-smuggling-with-origin-rules-using-newlines-in-the-host_header-action-parameterbyalbertspedersen

Programme HackerOne Cloudflare Public Bug Bounty Cloudflare Public Bug Bounty Submitted by albertspedersen albertspedersen Report HTTP request smuggling with Origin...

HackerOne Bug Bounty Disclosure: sign-in-with-apple-generates-long-life-jwts,-seemingly-irrevocable,-that-grant-immediate-access-to-accountsbymattipv4

Programme HackerOne Cloudflare Public Bug Bounty Cloudflare Public Bug Bounty Submitted by mattipv4 mattipv4 Report Sign in with Apple generates...