bug bounty

HackerOne Bug Bounty Disclosure: b-idor-vulnerability-on-profile-picture-changing-mechanism-which-discloses-other-user-s-profile-picture-b-triple-h

Company Name: b'Glassdoor' Company HackerOne URL: https://hackerone.com/glassdoor Submitted By:b'triple_h'Link to Submitters Profile:https://hackerone.com/b'triple_h' Report Title:b"IDOR vulnerability on profile picture changing mechanism...

HackerOne Bug Bounty Disclosure: b-organization-members-can-delete-reports-in-teams-they-have-no-access-to-b-verw-tch

Company Name: b'HackerOne' Company HackerOne URL: https://hackerone.com/security Submitted By:b'0verw4tch'Link to Submitters Profile:https://hackerone.com/b'0verw4tch' Report Title:b'Organization members can delete reports in teams...

HackerOne Bug Bounty Disclosure: b-html-injection-in-search-ui-when-selecting-a-circle-with-html-in-the-display-name-b-cx-fa

Company Name: b'Nextcloud' Company HackerOne URL: https://hackerone.com/nextcloud Submitted By:b'cx75fa'Link to Submitters Profile:https://hackerone.com/b'cx75fa' Report Title:b'HTML injection in search UI when selecting...

HackerOne Bug Bounty Disclosure: b-full-account-takeover-of-any-user-through-reset-password-b-maskedpersian

Company Name: b'U.S. Dept Of Defense' Company HackerOne URL: https://hackerone.com/deptofdefense Submitted By:b'maskedpersian'Link to Submitters Profile:https://hackerone.com/b'maskedpersian' Report Title:b'Full account takeover of...

HackerOne Bug Bounty Disclosure: b-unauthorised-cocoapods-auth-via-token-leakage-http-header-injection-b-reefspek

Company Name: b'Snowplow' Company HackerOne URL: https://hackerone.com/snowplow Submitted By:b'reefspek'Link to Submitters Profile:https://hackerone.com/b'reefspek' Report Title:b'Unauthorised CocoaPods Auth via Token Leakage &...

HackerOne Bug Bounty Disclosure: b-csrf-vulnerability-in-royal-canin-website-allows-attackers-to-change-user-profile-picture-at-my-royalcanin-pt-b-bx

Company Name: b'Mars' Company HackerOne URL: https://hackerone.com/mars Submitted By:b'bx00'Link to Submitters Profile:https://hackerone.com/b'bx00' Report Title:b'**"CSRF Vulnerability in Royal Canin Website Allows...

HackerOne Bug Bounty Disclosure: b-reflected-xss-in-https-wordpress-com-start-account-user-b-secureighty

Company Name: b'Automattic' Company HackerOne URL: https://hackerone.com/automattic Submitted By:b'secureighty'Link to Submitters Profile:https://hackerone.com/b'secureighty' Report Title:b'reflected xss in https://wordpress.com/start/account/user'Report Link:https://hackerone.com/reports/2055132Date Submitted:15 November...

HackerOne Bug Bounty Disclosure: b-buffer-overflow-and-affected-url-https-github-com-curl-curl-blob-master-docs-examples-hsts-preload-c-b-cyberguardianrd

Company Name: b'curl' Company HackerOne URL: https://hackerone.com/curl Submitted By:b'cyberguardianrd'Link to Submitters Profile:https://hackerone.com/b'cyberguardianrd' Report Title:b'Buffer overflow and affected url:-https://github.com/curl/curl/blob/master/docs/examples/hsts-preload.c'Report Link:https://hackerone.com/reports/2252307Date Submitted:15...

HackerOne Bug Bounty Disclosure: b-cve-apache-airflow-bypass-permission-verification-to-view-task-instances-of-other-dags-b-balis-ng

Company Name: b'Internet Bug Bounty' Company HackerOne URL: https://hackerone.com/ibb Submitted By:b'balis0ng'Link to Submitters Profile:https://hackerone.com/b'balis0ng' Report Title:b'CVE-2023-42663: Apache Airflow: Bypass permission...

HackerOne Bug Bounty Disclosure: b-password-of-talk-conversations-can-be-bruteforced-b-nickvergessen

Company Name: b'Nextcloud' Company HackerOne URL: https://hackerone.com/nextcloud Submitted By:b'nickvergessen'Link to Submitters Profile:https://hackerone.com/b'nickvergessen' Report Title:b'Password of talk conversations can be bruteforced'Report...

HackerOne Bug Bounty Disclosure: b-yaml-schema-injection-risk-in-swagger-ui-via-schema-url-parameter-at-developers-cloudflare-com-b-aliend

Company Name: b'Cloudflare Public Bug Bounty' Company HackerOne URL: https://hackerone.com/cloudflare Submitted By:b'aliend89'Link to Submitters Profile:https://hackerone.com/b'aliend89' Report Title:b'YAML schema injection risk...