HackerOne Bug Bounty Disclosure: stored-xss-on-tiktok-s-backend-leads-to-the-leakage-of-highly-sensitive-administrator-data-cookies-api-keys-internal-paths-emails-phone-numbers-ahmed-xyz

Company Name: TikTok Company HackerOne URL: https://hackerone.com/tiktok Submitted By:ahmed_xyzLink to Submitters Profile:https://hackerone.com/ahmed_xyz Report Title:Stored XSS on TikTok's backend leads to...

HackerOne Bug Bounty Disclosure: toctou-race-condition-in-http-connection-reuse-leads-to-certificate-validation-bypass–xrey

Company Name: curl Company HackerOne URL: https://hackerone.com/curl Submitted By:0xreyLink to Submitters Profile:https://hackerone.com/0xrey Report Title:TOCTOU Race Condition in HTTP/2 Connection Reuse...

HackerOne Bug Bounty Disclosure: chained-broken-access-control-in-tiktok-live-backstage-enables-full-control-of-public-leaderboard-activities-eneri

Company Name: TikTok Company HackerOne URL: https://hackerone.com/tiktok Submitted By:eneriLink to Submitters Profile:https://hackerone.com/eneri Report Title:Chained Broken Access Control in TikTok Live...