Month: September 2023

HackerOne Bug Bounty Disclosure: b-support-tickets-can-be-created-on-behalf-of-other-users-using-spoofed-email-bypass-of-b-as-patro

Company Name: b'HackerOne' Company HackerOne URL: https://hackerone.com/security Submitted By:b'as_patro'Link to Submitters Profile:https://hackerone.com/b'as_patro' Report Title:b'Support Tickets can be created on behalf...

HackerOne Bug Bounty Disclosure: b-cve-apache-airflow-spark-provider-deserialization-vulnerability-rce-b-happyhacking

Company Name: b'Internet Bug Bounty' Company HackerOne URL: https://hackerone.com/ibb Submitted By:b'happyhacking123'Link to Submitters Profile:https://hackerone.com/b'happyhacking123' Report Title:b'CVE-2023-40195: Apache Airflow Spark Provider...

HackerOne Bug Bounty Disclosure: b-unauthorized-ticket-can-be-created-by-an-attacker-in-user-s-helpdesk-account-b-fanimalikhack

Company Name: b'HackerOne' Company HackerOne URL: https://hackerone.com/security Submitted By:b'fanimalikhack'Link to Submitters Profile:https://hackerone.com/b'fanimalikhack' Report Title:b"Unauthorized Ticket can be created by an...