Writeups
Spotlight
Add Your Writeup
Blogs
Contact Us
Register
Login
Write-ups
Check The Published Writeups
Search
Reset
WDB
Title
Tags
Programs
Authors
Type
Publication
Added
2334
OVE-20210809-0001 Visual Studio Code .ipynb Jupyter Notebook XSS (Arbitrary File Read)
XSS
Arbitrary file read
Microsoft
Justin Steven (@justinsteven)
Bug Bounty
2021-08-11
2023-06-13
2237
GitHub Actions check-spelling community workflow - GITHUB_TOKEN leakage via advice.txt symlink
Logic flaw
Information disclosure
GitHub
Justin Steven (@justinsteven)
Bug Bounty
2021-09-08
2023-06-13
1724
Git honours embedded bare repos, and exploitation via core.fsmonitor in a directory%27s .git/config affects IDEs, shell prompts and Git pillagers
RCE
GitHub
Microsoft
JetBrains
Justin Steven (@justinsteven)
Bug Bounty
2022-03-16
2023-06-13
1460
Amazon Linux "log4j hotpatch" <1.3-5 local privilege escalation to root (race condition)
Local Privilege Escalation
Amazon
Justin Steven (@justinsteven)
Bug Bounty
2022-06-15
2023-06-13
498
postMessage DOM XSS vulnerability in Gartner Peer Insights widget
postMessage
DOM XSS
Gartner
Gradle
LogRhythm
SentinelOne
Synopsys
Veeam
Vodafone
Black Kite
ReversingLabs
Tata Communications
Justin Steven (@justinsteven)
Bug Bounty
2023-02-04
2023-06-13