5197 | XSS without HTML: Client-Side Template Injection with AngularJS |
CSTI
XSS |
Google |
Gareth Heyes (@garethheyes) |
Bug Bounty | 2016-01-27 | 2023-06-13 |
4469 | XSS in hidden input fields |
XSS |
NA |
Gareth Heyes (@garethheyes) |
Bug Bounty | 2018-11-16 | 2023-06-13 |
4121 | Bypassing CSP with policy injection |
CSP bypass |
Paypal |
Gareth Heyes (@garethheyes) |
Bug Bounty | 2019-06-05 | 2023-06-13 |
2436 | Finding DOM Polyglot XSS in PayPal the Easy Way |
DOM XSS
CSP bypass |
Paypal |
Gareth Heyes (@garethheyes) |
Bug Bounty | 2021-06-30 | 2023-06-13 |
1471 | Bypassing CSP with dangling iframes |
CSP bypass |
Google
Mozilla |
Gareth Heyes (@garethheyes) |
Bug Bounty | 2022-06-14 | 2023-06-13 |
1443 | Widespread prototype pollution gadgets |
Prototype pollution |
NA |
Gareth Heyes (@garethheyes) |
Bug Bounty | 2022-06-21 | 2023-06-13 |
1410 | Bypassing Firefox%27s HTML Sanitizer API |
XSS |
Mozilla |
Gareth Heyes (@garethheyes) |
Bug Bounty | 2022-06-29 | 2023-06-13 |
1144 | Using Hackability to uncover a Chrome infoleak |
SOP bypass |
Google |
Gareth Heyes (@garethheyes) |
Bug Bounty | 2022-09-01 | 2023-06-13 |
881 | Safari is hot-linking images to semi-random websites |
Browser hacking
XSS |
Apple |
Gareth Heyes (@garethheyes) |
Bug Bounty | 2022-10-31 | 2023-06-13 |
826 | Stealing passwords from infosec Mastodon - without bypassing CSP |
HTML injection |
Mastodon
infosec.exchange |
Gareth Heyes (@garethheyes) |
Bug Bounty | 2022-11-15 | 2023-06-13 |
441 | Server-side prototype pollution: Black-box detection without the DoS |
Server-side prototype pollution
RCE |
NA |
Gareth Heyes (@garethheyes) |
Bug Bounty | 2023-02-15 | 2023-06-13 |
269 | Exploiting prototype pollution in Node without the filesystem |
Server-side prototype pollution
RCE |
NA |
Gareth Heyes (@garethheyes) |
Bug Bounty | 2023-03-23 | 2023-06-13 |
147 | Ambushed by AngularJS: a hidden CSP bypass in Piwik PRO |
CSP bypass |
Piwik |
Gareth Heyes (@garethheyes) |
Bug Bounty | 2023-04-28 | 2023-06-13 |
27 | Bypassing CSP via DOM clobbering |
DOM Clobbering
CSP bypass |
NA |
Gareth Heyes (@garethheyes) |
Bug Bounty | 2023-06-05 | 2023-06-13 |