bug bounty

HackerOne Bug Bounty Disclosure: b-unauthorized-ticket-can-be-created-by-an-attacker-in-user-s-helpdesk-account-b-fanimalikhack

Company Name: b'HackerOne' Company HackerOne URL: https://hackerone.com/security Submitted By:b'fanimalikhack'Link to Submitters Profile:https://hackerone.com/b'fanimalikhack' Report Title:b"Unauthorized Ticket can be created by an...

HackerOne Bug Bounty Disclosure: b-cve-apache-airflow-spark-provider-deserialization-vulnerability-rce-b-happyhacking

Company Name: b'Internet Bug Bounty' Company HackerOne URL: https://hackerone.com/ibb Submitted By:b'happyhacking123'Link to Submitters Profile:https://hackerone.com/b'happyhacking123' Report Title:b'CVE-2023-40195: Apache Airflow Spark Provider...

HackerOne Bug Bounty Disclosure: b-triager-team-members-can-edit-hacker-s-report-and-hacker-is-not-even-notified-b-abhhinavsecondary

Company Name: b'HackerOne' Company HackerOne URL: https://hackerone.com/security Submitted By:b'abhhinavsecondary'Link to Submitters Profile:https://hackerone.com/b'abhhinavsecondary' Report Title:b"Triager/Team members can edit hacker's report and...

HackerOne Bug Bounty Disclosure: b-response-manipulation-lead-to-bypass-verification-code-while-making-appointment-at-banfield-com-b-mo-giza

Company Name: b'Mars' Company HackerOne URL: https://hackerone.com/mars Submitted By:b'mo3giza'Link to Submitters Profile:https://hackerone.com/b'mo3giza' Report Title:b'Response Manipulation lead to bypass verification code...

HackerOne Bug Bounty Disclosure: b-names-not-completely-redacted-despite-redact-the-names-of-the-involved-users-is-selected-b-japz

Company Name: b'HackerOne' Company HackerOne URL: https://hackerone.com/security Submitted By:b'japz'Link to Submitters Profile:https://hackerone.com/b'japz' Report Title:b'Names not completely redacted despite "Redact the...

HackerOne Bug Bounty Disclosure: b-idor-delete-all-licenses-and-certifications-from-users-account-using-createorupdatehackercertification-graphql-query-b-callmed

Company Name: b'HackerOne' Company HackerOne URL: https://hackerone.com/security Submitted By:b'callmed0_4'Link to Submitters Profile:https://hackerone.com/b'callmed0_4' Report Title:b'IDOR - Delete all Licenses and certifications...

HackerOne Bug Bounty Disclosure: b-unsanitized-input-goes-to-regex-function-leads-to-redos-that-make-request-hangs-b-shin

Company Name: b'Internet Bug Bounty' Company HackerOne URL: https://hackerone.com/ibb Submitted By:b'shin24'Link to Submitters Profile:https://hackerone.com/b'shin24' Report Title:b'unsanitized input goes to regex...

HackerOne Bug Bounty Disclosure: b-stored-xss-on-promo-indrive-com-b-kristoferent

Company Name: b'inDrive' Company HackerOne URL: https://hackerone.com/indrive Submitted By:b'kristoferent'Link to Submitters Profile:https://hackerone.com/b'kristoferent' Report Title:b'Stored XSS on promo.indrive.com'Report Link:https://hackerone.com/reports/2051085Date Submitted:28 August...

HackerOne Bug Bounty Disclosure: b-http-request-smuggling-via-empty-headers-separated-by-cr-b-yadhukrishnam

Company Name: b'Internet Bug Bounty' Company HackerOne URL: https://hackerone.com/ibb Submitted By:b'yadhukrishnam'Link to Submitters Profile:https://hackerone.com/b'yadhukrishnam' Report Title:b'HTTP Request Smuggling via Empty...