5092 | Airbnb – When Bypassing JSON Encoding, XSS Filter, WAF, CSP, and Auditor turns into Eight Vulnerabilities |
XSS
CSP bypass |
Airbnb |
Brett Buerhaus (@bbuerhaus) |
Bug Bounty | 2017-03-08 | 2023-06-13 |
5044 | Making an XSS triggered by CSP bypass on Twitter. |
XSS
CSP bypass |
Twitter |
tbmnull |
Bug Bounty | 2017-07-06 | 2023-06-13 |
4804 | Bypass CSP by Abusing XSS Filter in Edge |
CSP bypass |
Microsoft |
Xiaoyin Liu (@general_nfs) |
Bug Bounty | 2018-04-15 | 2023-06-13 |
4716 | XSS in Google Colaboratory + CSP bypass |
XSS
CSP bypass |
Google |
Michał Bentkowski (@SecurityMB) |
Bug Bounty | 2018-06-21 | 2023-06-13 |
4555 | Applying a small bypass to steal Facebook Session tokens in Uber |
XSS
CSP bypass
OAuth |
Uber |
Samuel (@saamux) |
Bug Bounty | 2018-10-02 | 2023-06-13 |
4544 | My First 0day Exploit (CSP Bypass + Reflected XSS) #BUGBOUNTY |
Reflected XSS
CSP bypass |
NA |
Ali Tütüncü(@alicanact60) |
Bug Bounty | 2018-10-07 | 2023-06-13 |
4361 | Bypass Content Security Policy framing restriction rule - OLX |
CSP bypass |
OLX |
Taha Ibrahim Draidia |
Bug Bounty | 2019-01-17 | 2023-06-13 |
4277 | How I alert(1) in Azure DevOps |
XSS
CSP bypass |
Microsoft |
SpyD3r (@TarunkantG) |
Bug Bounty | 2019-02-26 | 2023-06-13 |
4121 | Bypassing CSP with policy injection |
CSP bypass |
Paypal |
Gareth Heyes (@garethheyes) |
Bug Bounty | 2019-06-05 | 2023-06-13 |
3687 | Critical Security Flaw Found in WhatsApp Desktop Platform Allowing Cybercriminals Read From The File System Access |
Stored XSS
CSP bypass
Open redirect
RCE |
Meta / Facebook |
Gal Weizman (@WeizmanGal) |
Bug Bounty | 2020-02-04 | 2023-06-13 |
3668 | CVE-2019-18426 - WhatsApp Vulnerabilities Disclosure - Open Redirect + CSP Bypass + Persistent XSS + FS read permissions + potential for RCE |
RCE
Stored XSS
CSP bypass
Arbitrary file read
Open redirect
Security code review |
Meta / Facebook (WhatsApp) |
Gal Weizman (@WeizmanGal) |
Bug Bounty | 2020-02-14 | 2023-06-13 |
3579 | Executing scripts in Safari Reader Mode to CSP Bypass |
XSS
CSP bypass |
Apple |
Nikhil Mittal (@c0d3G33k) |
Bug Bounty | 2020-03-28 | 2023-06-13 |
3232 | CSP Bypass Vulnerability in Google Chrome Discovered - Almost Every Website In The World Was At Risk |
CSP bypass |
Google |
Gal Weizman (@WeizmanGal) |
Bug Bounty | 2020-08-10 | 2023-06-13 |
3186 | My Hacking Adventures With Safari Reader Mode |
CSP bypass
SOP bypass |
Apple |
Nikhil Mittal (@c0d3G33k) |
Bug Bounty | 2020-08-27 | 2023-06-13 |
3178 | CVE-2020-6519 - Chromium 83 Zero Day Full CSP Bypass Cross Platforms |
CSP bypass |
Google (Chrome & Chromium) |
Gal Weizman (@WeizmanGal) |
Bug Bounty | 2022-09-02 | 2023-06-13 |
3132 | Chains on Chains: Chaining multiple low-level vulns into a Critical. |
Blind XSS
CSP bypass
Lack of rate limiting
Exposed JWT generation endpoint
JWT |
NA |
Daniel Marte (@Masonhck3571) |
Bug Bounty | 2020-09-26 | 2023-06-13 |
2981 | "Important, Spoofing" - zero-click, wormable, cross-platform remote code execution in Microsoft Teams |
RCE
Stored XSS
CSP bypass
CSTI |
Microsoft |
Oskars Vegeris |
Bug Bounty | 2020-12-07 | 2023-06-13 |
2976 | Content-Security-Policy Bypass to perform XSS using MIME sniffing |
XSS
CSP bypass |
NA |
Kleiton Kurti (@kleiton0x7e) |
Bug Bounty | 2020-12-10 | 2023-06-13 |
2623 | Playing With iframes: Bypassing Content-Security-Policy |
CSP bypass
Open redirect
HTML injection |
NA |
JM Sanchez / 0xEchidonut (@jmrcsnchz) |
Bug Bounty | 2021-04-20 | 2023-06-13 |
2519 | The beauty of chaining client-side bugs |
CRLF injection
XSS
CSP bypass
DoS
CSTI |
NA |
Master SEC (@MasterSEC_AR) |
Bug Bounty | 2021-05-29 | 2023-06-13 |
2507 | XSS in the AWS Console |
XSS
CSP bypass
CSTI |
AWS |
Nick Frichette (@frichette_n) |
Bug Bounty | 2021-06-02 | 2023-06-13 |
2436 | Finding DOM Polyglot XSS in PayPal the Easy Way |
DOM XSS
CSP bypass |
Paypal |
Gareth Heyes (@garethheyes) |
Bug Bounty | 2021-06-30 | 2023-06-13 |
2362 | Bug Bounty Stories #1: Tale of CSP bypass in an electron app! |
CSP bypass |
NA |
SecurityGOAT (@RuntimeSecurity) |
Bug Bounty | 2021-07-31 | 2023-06-13 |
2070 | The tale of CVE-2021–34479 (VSCode XSS) |
XSS
CSP bypass |
Microsoft |
Daniel Santos (@bananabr) |
Bug Bounty | 2021-11-17 | 2023-06-13 |
1509 | Bypass CSP Using WordPress By Abusing Same Origin Method Execution |
CSP bypass
Same Origin Method Execution |
WordPress |
Paulos Yibelo (@PaulosYibelo) |
Bug Bounty | 2022-05-29 | 2023-06-13 |