HackerOne Bug Bounty Disclosure: [accounts-reddit-com]-redirect-parameter-allows-for-xssbydvorakxl
Programme HackerOne Reddit Reddit Submitted by dvorakxl dvorakxl Report Redirect parameter allows for XSS Full Report A considerable amount...
Programme HackerOne Reddit Reddit Submitted by dvorakxl dvorakxl Report Redirect parameter allows for XSS Full Report A considerable amount...
Programme HackerOne Reddit Reddit Submitted by helloitscyberguard helloitscyberguard Report Rate limit is implemented in Reddit , but its not working...
Programme HackerOne curl curl Submitted by kurohiro kurohiro Report CVE-2023-28321: IDN wildcard match Full Report A considerable amount of...
Programme HackerOne Nextcloud Nextcloud Submitted by maxime_le-hericy maxime_le-hericy Report Users can set up workflows using restricted and invisible system tags...
Programme HackerOne curl curl Submitted by nyymi nyymi Report CVE-2023-28320: siglongjmp race condition Full Report A considerable amount of...
Programme HackerOne LinkedIn LinkedIn Submitted by marvelmaniac marvelmaniac Report Anyone can view the results of linkedin skill test -if failed...
Programme HackerOne Nextcloud Nextcloud Submitted by cryptographer cryptographer Report No rate limit while adding Additional emails feature Full Report ...
Programme HackerOne Ruby Ruby Submitted by ooooooo_q ooooooo_q Report ReDoS in Time.rfc2822 Full Report A considerable amount of time...
Programme HackerOne 8x8 Bounty 8x8 Bounty Submitted by yassinek3ch yassinek3ch Report connect.8x8.com: Blind SSRF via /api/v2/chats/image-check allows for Internal Ports...
Programme HackerOne U.S. Dept Of Defense U.S. Dept Of Defense Submitted by waterlord7788 waterlord7788 Report Default Credentials on Kinetic Core...
Programme HackerOne U.S. Dept Of Defense U.S. Dept Of Defense Submitted by nightm4re nightm4re Report Exposed GIT repo on Full...
Programme HackerOne U.S. Dept Of Defense U.S. Dept Of Defense Submitted by cametome006 cametome006 Report AEM misconfiguration leads to Information...
Programme HackerOne U.S. Dept Of Defense U.S. Dept Of Defense Submitted by 0r10nh4ck 0r10nh4ck Report Sensitive Data Exposure via wp-config.php...
Programme HackerOne U.S. Dept Of Defense U.S. Dept Of Defense Submitted by cdl cdl Report XXE on https:// via SpellCheck...
Programme HackerOne Nextcloud Nextcloud Submitted by lukasreschke lukasreschke Report Reflected XSS vulnerability with full CSP bypass in Nextcloud installations using...
Programme HackerOne U.S. Dept Of Defense U.S. Dept Of Defense Submitted by colemanj colemanj Report XSS in ServiceNow logout https://:443...
Programme HackerOne LinkedIn LinkedIn Submitted by find_me_here find_me_here Report Can create articles using other users' NewsLetters Full Report A...
Programme HackerOne U.S. Dept Of Defense U.S. Dept Of Defense Submitted by nightm4re nightm4re Report CSRF to delete accounts Full...
Programme HackerOne U.S. Dept Of Defense U.S. Dept Of Defense Submitted by cdl cdl Report Remote Code Execution on Full...
Programme HackerOne U.S. Dept Of Defense U.S. Dept Of Defense Submitted by 0xmaruf 0xmaruf Report LDAP Server NULL Bind Connection...
Programme HackerOne WordPress WordPress Submitted by chip_sec chip_sec Report PII of users can be downloaded from export pages Full Report...
Programme HackerOne HackerOne HackerOne Submitted by iamr0000t iamr0000t Report HTML injection in email at https://www.hackerone.com/ Full Report A considerable...
Programme HackerOne GlassWire GlassWire Submitted by chip_sec chip_sec Report Facebook App API credentials leaked in the APK Full Report ...
Programme HackerOne LinkedIn LinkedIn Submitted by encodedguy encodedguy Report Delete any LinkedIn comment on learning API of other users Full...