Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
5073Pivoting from blind SSRF to RCE with HashiCorp Consul Blind XSS RCE NA Peter Adkins (@darkarnium) Bug Bounty2017-05-292023-06-13
5053Yahoo Small Business (Luminate) and the Not-So-Secret Keys Blind SSRF Yahoo! / Verizon Media Tommy DeVoss / dawgyg (@thedawgyg) Bug Bounty2017-06-232023-06-13
4917Bug Bounty: Fastmail Blind SSRF Blind XXE Fastmail Brian Hyde (@0xHyde) Bug Bounty2017-12-082023-06-13
4910P4 to P2 - The story of one blind SSRF Blind SSRF NA Mikhail Klyuchnikov (@__Mn1__) Bug Bounty2017-12-192023-06-13
4157BLIND SSRF in *.stripe.com due to Sentry Misconfiguration Blind SSRF Stripe Oktavandi (@0ktavandi) Bug Bounty2019-05-092023-06-13
3985LAN-Based Blind SSRF Attack Primitive for Windows Systems (switcheroo) SSRF Microsoft initstring (@init_string) Bug Bounty2019-08-092023-06-13
3837[Server Side Request Forgery] Blind SSRF due to Sentry Misconfiguration SSRF NA Kent Bayron (@bayronkentoy) Bug Bounty2019-11-142023-06-13
3512The Story of Blind SSRF leads to internal Host discovery. SSRF NA kaustubh padwad (@s3curityb3ast) Bug Bounty2020-05-012023-06-13
3508Blind SSRF on coda.io SSRF Coda Kleiton Kurti (@kleiton0x7e) Bug Bounty2020-05-022023-06-13
3330My First Bug: Blind SSRF Through Profile Picture Upload SSRF NA swaysthinking (@swaysThinking) Bug Bounty2020-07-052023-06-13
3097Blind SSRF - The Hide & Seek Game Blind SSRF NA Shrey Shah (@ShreySh43332033) Bug Bounty2020-10-132023-06-13
2998WonderCMS 3.1.3 - Authenticated RCE & Blind SSRF Vulnerability Blind SSRF RCE WonderCMS Mas Zet (@zetc0de) Bug Bounty2020-11-292023-06-13
2763CVE-2020–13956 Blind SSRF URL parsing issue Apache HttpClient Priyank (@Rev_Octo) Bug Bounty2021-02-262023-06-13
2656Chaining an Blind SSRF bug to Get an RCE Blind SSRF RCE NA Santosh Kumar Sha (@killmongar1996) Bug Bounty2021-04-072023-06-13
2627Blind SSRF to Port Scanning through response time SSRF NA Harish Bug Bounty2021-04-192023-06-13
2548Just Gopher It: Escalating a Blind SSRF to RCE for $15k SSRF RCE NA SirLeeroyJenkins (@SirLeeroyJenkin) Bug Bounty2021-05-172023-06-13
2330Blind SSRF in URL Validator Blind SSRF NA Yash Kandekar (@Neutron__) Bug Bounty2021-08-122023-06-13
2133Moodle - Stored XSS and blind SSRF possible via feedback answer text Stored XSS SSRF Moodle rekter0 (@rekter0) Bug Bounty2021-10-222023-06-13
1480From blind SSRF to localhost dirbusting and asset enumeration SSRF NA Jovan Šikanja (@joshibeast) Bug Bounty2022-06-112023-06-13
1123WordPress Core - Unauthenticated Blind SSRF SSRF WordPress Simon Scannell (@scannell_simon) Bug Bounty2022-09-062023-06-13
891Blind SSRF in Skype (Microsoft) Blind SSRF Microsoft Jayateertha Guruprasad (@JayateerthaG) Bug Bounty2022-10-282023-06-13