4495 | Full Account Takeover via Referer Header (OAuth token Steal, Open Redirect Vulnerability Chaining) |
Open redirect
Token leak
Account takeover |
NA |
Muhammad Asim Shahzad (@protector47) |
Bug Bounty | 2018-11-03 | 2023-06-13 |
4379 | Stealing Side-Channel Attack Tokens in Facebook Account Switcher |
Token leak |
Meta / Facebook |
Max Pasqua |
Bug Bounty | 2019-01-04 | 2023-06-13 |
4335 | Hijacking accounts by retrieving JWT tokens via unvalidated redirects |
Open redirect
Token leak |
NA |
Shawar Khan (@ShawarkOFFICIAL) |
Bug Bounty | 2019-01-27 | 2023-06-13 |
4144 | Leaking OpenID tokens with “ — the bug right infront of you |
OpenID Connect
Open redirect
Token leak |
NA |
Zseano (@zseano) |
Bug Bounty | 2019-05-21 | 2023-06-13 |
4052 | OAuth authentication bypass on Airbnb acquisition using 1-char Open Redirect |
Open redirect
Token leak
Account takeover |
Airbnb |
Evgeniy Yakovchuk (@h1_sp1d3r) |
Bug Bounty | 2019-07-10 | 2023-06-13 |
3712 | Password Reset Token Leak Via Referrer |
Password reset
Information disclosure |
NA |
Shrey Shah (@ShreySh43332033) |
Bug Bounty | 2020-01-22 | 2023-06-13 |
3537 | DOM based open redirect to the leak of a JWT token |
Open redirect
DOM-based open redirect
Token leak |
NA |
Adolphoramirez |
Bug Bounty | 2020-04-20 | 2023-06-13 |
3343 | How i got 200$ with an out of the box open redirect vulnerability |
Open redirect
Token leak |
NA |
Tarek Galleze |
Bug Bounty | 2020-07-03 | 2023-06-13 |
3029 | Exploiting API with AuthToken |
Token leak
Information disclosure |
NA |
Rafi Ahamed (Leonidas D. Ace) |
Bug Bounty | 2020-11-15 | 2023-06-13 |
2767 | Password Reset Token Leak via X-Forwarded-Host |
Host header injection
Account takeover
Password reset |
NA |
Saajan Bhujel (@saajanbhujel) |
Bug Bounty | 2021-02-26 | 2023-06-13 |
2481 | Stealing tokens, emails, files and more in Microsoft Teams through malicious tabs |
postMessage
Token leak |
Microsoft |
Evan Grant (@stargravy) |
Bug Bounty | 2021-06-14 | 2023-06-13 |
2313 | Account Takeover via Access Token Leakage |
IDOR
Information disclosure
Account takeover |
NA |
Tuhin Bose (@tuhin1729_) |
Bug Bounty | 2021-08-19 | 2023-06-13 |
2237 | GitHub Actions check-spelling community workflow - GITHUB_TOKEN leakage via advice.txt symlink |
Logic flaw
Information disclosure |
GitHub |
Justin Steven (@justinsteven) |
Bug Bounty | 2021-09-08 | 2023-06-13 |
1958 | Bypassing Identity-Aware Proxy - Google Cloud Vulnerability |
Authorization flaw
Token leak
OAuth |
Google |
SebLu |
Bug Bounty | 2021-12-30 | 2023-06-13 |
1955 | Bug Hunting Journey of 2021 |
Stored XSS
Open redirect
Token leak
CSRF
Logic flaw
Information disclosure
IDOR
Account takeover |
NA |
Sudhanshu Rajbhar (@sudhanshur705) |
Bug Bounty | 2021-12-31 | 2023-06-13 |
1791 | OAuth and PostMessage - Chaining misconfigurations for your access token. |
OAuth
postMessage
Token leak |
NA |
Suraj Disoja (@ninetyn1ne_) |
Bug Bounty | 2022-02-21 | 2023-06-13 |
1615 | Full Account Takeover via Open Redirection |
Open redirect
Token leak
Account takeover
OAuth |
NA |
vFlexo (@vflexo) |
Bug Bounty | 2022-04-17 | 2023-06-13 |
1588 | Sensitive Data Exfiltration through XSS ($450) |
Token leak |
NA |
Zulfi Al-Farizi |
Bug Bounty | 2022-04-30 | 2023-06-13 |
1359 | Authorization token leak from verify email endpoint |
Account takeover
Information disclosure |
NA |
Vengeance |
Bug Bounty | 2022-07-16 | 2023-06-13 |
1198 | Never underestimate the power of open redirect, a story of a full account takeover |
Open redirect
Account takeover
Token leak |
NA |
Ibrahim Auwal (@ibrahimatix0x01) |
Bug Bounty | 2022-08-20 | 2023-06-13 |
1104 | Fun With CORS |
CORS misconfiguration
Token leak |
NA |
Talis Ozols |
Bug Bounty | 2022-09-08 | 2023-06-13 |
1067 | Android Application Forgot Password Token Leakage Leading to Account Takeover |
Information disclosure
Password reset
Account takeover
Android |
NA |
Cyberali |
Bug Bounty | 2022-09-19 | 2023-06-13 |
684 | Simple CORS misconfig leads to disclose the sensitive token worth of $$$ |
CORS misconfiguration
Token leak |
Linear |
Ramalingasamy |
Bug Bounty | 2022-12-16 | 2023-06-13 |
398 | draw.io CVEs |
SSRF
OAuth
Open redirect
Token leak
Security code review |
draw.io |
@caioluders |
Bug Bounty | 2023-02-24 | 2023-06-13 |
294 | OAuth 2.0 Authentication Misconfiguration |
OAuth
Account takeover
Open redirect
Token leak |
NA |
Mohamed Lakhdar Metidji (@minometidjii) |
Bug Bounty | 2023-03-16 | 2023-06-13 |