5067 | Android Browser Same Origin Policy Bypass < 4.4 - CVE-2014-6041 |
SOP bypass |
Google |
Rafay Baloch (@rafaybaloch) |
Bug Bounty | 2017-06-01 | 2023-06-13 |
5066 | A Tale Of Another SOP Bypass In Android Browser < 4.4 |
SOP bypass |
Google |
Rafay Baloch (@rafaybaloch) |
Bug Bounty | 2017-06-01 | 2023-06-13 |
4740 | Reading Your Emails With A Read&Write Chrome Extension Same Origin Policy Bypass (~8 Million Users Affected) |
SOP bypass
Browser extension hacking |
NA |
Matthew Bryant (@IAmMandatory) |
Bug Bounty | 2018-06-05 | 2023-06-13 |
4664 | Exploiting a Microsoft Edge Vulnerability to Steal Files |
SOP bypass |
Microsoft |
Ziyahan Albeniz (@ziyaxanalbeniz) |
Bug Bounty | 2018-08-01 | 2023-06-13 |
4519 | Google sites and exploiting same origin policy |
SOP bypass |
Google |
Raushan Raj (@raushan_rajj) |
Bug Bounty | 2018-10-22 | 2023-06-13 |
4218 | Same-Origin Policy: From birth until today |
SOP bypass
Browser hacking
CSRF
CORS |
Mozilla
Google (Chrome)
Opera |
Alex Nikolova (@AaylaSecura1138) |
Bug Bounty | 2019-04-04 | 2023-06-13 |
3758 | SOP Bypass via browser-cache |
SOP bypass |
Keybase |
Aaron Costello (@ConspiracyProof) |
Bug Bounty | 2019-12-24 | 2023-06-13 |
3630 | SOP Bypass |
SOP bypass |
NA |
Kenan (@kenanistaken) |
Bug Bounty | 2020-03-03 | 2023-06-13 |
3595 | Hacking — Always Check the Cross-domain Policy |
SOP bypass
CSRF |
Starbucks |
Jack |
Bug Bounty | 2020-03-19 | 2023-06-13 |
3186 | My Hacking Adventures With Safari Reader Mode |
CSP bypass
SOP bypass |
Apple |
Nikhil Mittal (@c0d3G33k) |
Bug Bounty | 2020-08-27 | 2023-06-13 |
1611 | Adobe Acrobat hollowing out same-origin policy |
XSS
SOP bypass
Open redirect
postMessage |
Adobe |
Wladimir Palant (@WPalant) |
Bug Bounty | 2022-04-19 | 2023-06-13 |
1144 | Using Hackability to uncover a Chrome infoleak |
SOP bypass |
Google |
Gareth Heyes (@garethheyes) |
Bug Bounty | 2022-09-01 | 2023-06-13 |
822 | Chromium: Same Origin Policy bypass within a single site a.k.a. "Google Roulette" |
SOP bypass
Browser hacking |
Google (Chromium) |
Michał Bentkowski (@SecurityMB) |
Bug Bounty | 2022-11-16 | 2023-06-13 |
226 | Discovering Headroll (CVE-2023–0704) in Chromium |
SOP bypass
Browser hacking |
Google (Chromium) |
Rhys Elsmore (@rhyselsmore) |
Bug Bounty | 2023-04-05 | 2023-06-13 |