bug bounty

HackerOne Bug Bounty Disclosure: b-csrf-vulnerability-in-royal-canin-website-allows-attackers-to-change-user-profile-picture-at-my-royalcanin-pt-b-bx

Company Name: b'Mars' Company HackerOne URL: https://hackerone.com/mars Submitted By:b'bx00'Link to Submitters Profile:https://hackerone.com/b'bx00' Report Title:b'**"CSRF Vulnerability in Royal Canin Website Allows...

HackerOne Bug Bounty Disclosure: b-reflected-xss-in-https-wordpress-com-start-account-user-b-secureighty

Company Name: b'Automattic' Company HackerOne URL: https://hackerone.com/automattic Submitted By:b'secureighty'Link to Submitters Profile:https://hackerone.com/b'secureighty' Report Title:b'reflected xss in https://wordpress.com/start/account/user'Report Link:https://hackerone.com/reports/2055132Date Submitted:15 November...

HackerOne Bug Bounty Disclosure: b-buffer-overflow-and-affected-url-https-github-com-curl-curl-blob-master-docs-examples-hsts-preload-c-b-cyberguardianrd

Company Name: b'curl' Company HackerOne URL: https://hackerone.com/curl Submitted By:b'cyberguardianrd'Link to Submitters Profile:https://hackerone.com/b'cyberguardianrd' Report Title:b'Buffer overflow and affected url:-https://github.com/curl/curl/blob/master/docs/examples/hsts-preload.c'Report Link:https://hackerone.com/reports/2252307Date Submitted:15...

HackerOne Bug Bounty Disclosure: b-cve-apache-airflow-bypass-permission-verification-to-view-task-instances-of-other-dags-b-balis-ng

Company Name: b'Internet Bug Bounty' Company HackerOne URL: https://hackerone.com/ibb Submitted By:b'balis0ng'Link to Submitters Profile:https://hackerone.com/b'balis0ng' Report Title:b'CVE-2023-42663: Apache Airflow: Bypass permission...

HackerOne Bug Bounty Disclosure: b-password-of-talk-conversations-can-be-bruteforced-b-nickvergessen

Company Name: b'Nextcloud' Company HackerOne URL: https://hackerone.com/nextcloud Submitted By:b'nickvergessen'Link to Submitters Profile:https://hackerone.com/b'nickvergessen' Report Title:b'Password of talk conversations can be bruteforced'Report...

HackerOne Bug Bounty Disclosure: b-yaml-schema-injection-risk-in-swagger-ui-via-schema-url-parameter-at-developers-cloudflare-com-b-aliend

Company Name: b'Cloudflare Public Bug Bounty' Company HackerOne URL: https://hackerone.com/cloudflare Submitted By:b'aliend89'Link to Submitters Profile:https://hackerone.com/b'aliend89' Report Title:b'YAML schema injection risk...

HackerOne Bug Bounty Disclosure: b-cross-site-request-forgery-b-pascal-geuter

Company Name: b'ownCloud' Company HackerOne URL: https://hackerone.com/owncloud Submitted By:b'pascal_geuter'Link to Submitters Profile:https://hackerone.com/b'pascal_geuter' Report Title:b'Cross-Site Request Forgery 'Report Link:https://hackerone.com/reports/2041007Date Submitted:05 November...

HackerOne Bug Bounty Disclosure: b-user-automatically-logged-in-as-sys-admin-user-on-https-administration-administration-aspx-b-mrr-b-t

Company Name: b'U.S. Dept Of Defense' Company HackerOne URL: https://hackerone.com/deptofdefense Submitted By:b'mrr0b0t2324'Link to Submitters Profile:https://hackerone.com/b'mrr0b0t2324' Report Title:b'User automatically logged in...

HackerOne Bug Bounty Disclosure: b-information-disclosure-due-unauthenticated-access-to-apis-and-system-browser-functions-b-sufatmawati

Company Name: b'U.S. Dept Of Defense' Company HackerOne URL: https://hackerone.com/deptofdefense Submitted By:b'sufatmawati'Link to Submitters Profile:https://hackerone.com/b'sufatmawati' Report Title:b' Information disclosure due...

HackerOne Bug Bounty Disclosure: b-fetlife-com-signup-step-profile-expose-access-token-of-mapbox-com-b-deepblue

Company Name: b'FetLife' Company HackerOne URL: https://hackerone.com/fetlife Submitted By:b'deepblue29'Link to Submitters Profile:https://hackerone.com/b'deepblue29' Report Title:b'fetlife.com/signup_step_profile expose access_token of mapbox.com'Report Link:https://hackerone.com/reports/2129769Date Submitted:01...

HackerOne Bug Bounty Disclosure: b-title-deceptive-manipulation-of-http-to-https-with-vpn-in-burp-suite-b-rexifylo

Company Name: b'PortSwigger Web Security' Company HackerOne URL: https://hackerone.com/portswigger Submitted By:b'rexifylo'Link to Submitters Profile:https://hackerone.com/b'rexifylo' Report Title:b'Title: Deceptive Manipulation of HTTP...

HackerOne Bug Bounty Disclosure: b-stored-xss-at-https-x-com-api-id-b-pentestor

Company Name: b'8x8 Bounty' Company HackerOne URL: https://hackerone.com/8x8-bounty Submitted By:b'pentestor'Link to Submitters Profile:https://hackerone.com/b'pentestor' Report Title:b'Stored xss at https://.8x8.com/api//ID'Report Link:https://hackerone.com/reports/2078490Date Submitted:30...

HackerOne Bug Bounty Disclosure: b-security-bug-https-bugzilla-mozilla-org-oauth-authorize-crlf-header-injection-via-redirect-uri-parameter-b-oja

Company Name: b'Mozilla Critical Services' Company HackerOne URL: https://hackerone.com/mozilla_critical_services Submitted By:b'oja'Link to Submitters Profile:https://hackerone.com/b'oja' Report Title:b'Security bug https://bugzilla.mozilla.org/oauth/authorize - CRLF...

HackerOne Bug Bounty Disclosure: b-unauthorized-access-to-deleted-interviews-on-glassdoor-platform-b-frankcadillac

Company Name: b'Glassdoor' Company HackerOne URL: https://hackerone.com/glassdoor Submitted By:b'frankcadillac'Link to Submitters Profile:https://hackerone.com/b'frankcadillac' Report Title:b'Unauthorized Access to Deleted Interviews on Glassdoor...