2296 | Vulnerability in Bumble dating app reveals any user%27s exact location |
Information disclosure
Logic flaw |
Bumble |
Robert Heaton (@RobJHeaton) |
Bug Bounty | 2021-08-25 | 2023-06-13 |
2294 | Business Logic Ratings Bug |
Logic flaw |
NA |
Maxwell Dulin (@Dooflin5) |
Bug Bounty | 2021-08-25 | 2023-06-13 |
2270 | Full PoC | Metasploit Pro Trial License Request Limit Bypass |
Privilege escalation
Logic flaw |
Rapid7 |
ChooK |
Bug Bounty | 2021-08-31 | 2023-06-13 |
2251 | Business Logic Errors - Must Vote |
Logic flaw |
NA |
Jerry Shah (@Jerry) |
Bug Bounty | 2021-09-05 | 2023-06-13 |
2237 | GitHub Actions check-spelling community workflow - GITHUB_TOKEN leakage via advice.txt symlink |
Logic flaw
Information disclosure |
GitHub |
Justin Steven (@justinsteven) |
Bug Bounty | 2021-09-08 | 2023-06-13 |
2233 | How I Was Able to delete any facebook story where am I mentioned or tagged |
Logic flaw |
Meta / Facebook |
Sank Dahal (@sank68034756) |
Bug Bounty | 2021-09-10 | 2023-06-13 |
2227 | Escalating Azure Privileges with the Log Analytics Contributor Role |
Logic flaw |
Microsoft |
Karl Fosaaen (@kfosaaen) |
Bug Bounty | 2021-09-13 | 2023-06-13 |
2226 | Hacking CloudKit - How I accidentally deleted your Apple Shortcuts |
Logic flaw |
Apple |
Frans Rosén (@fransrosen) |
Bug Bounty | 2021-09-13 | 2023-06-13 |
2220 | A Facebook bug that exposes email/phone number to your friends |
Information disclosure
Logic flaw |
Meta / Facebook |
Saugat Pokharel (@saugatpk5) |
Bug Bounty | 2021-09-15 | 2023-06-13 |
2215 | How to have free Internet WIFI on United Airlines flights |
Payment tampering
Logic flaw |
United Airlines |
Philippe Delteil (@PhilippeDelteil) |
Bug Bounty | 2021-09-17 | 2023-06-13 |
2197 | Bug-Bounty | FASTMAIL [topicbox.com: Privileges Escalation > Organization Takeover] |
Privilege escalation
Logic flaw |
Fastmail |
Mohammed ELdawody |
Bug Bounty | 2021-09-24 | 2023-06-13 |
2190 | Improper phone number validation to account takeover |
Logic flaw
OTP bypass
Account takeover |
NA |
shesha sai_c (@Cyb3r_4ss4s1n) |
Bug Bounty | 2021-09-27 | 2023-06-13 |
2180 | Expect The Unexpected: Discovering fresh ZeroDay for Bounty |
Logic flaw
Information disclosure |
NA |
Sina Kheirkhah (@SinSinology) |
Bug Bounty | 2021-09-30 | 2023-06-13 |
2176 | The Discovery Of Gatekeeper Bypass CVE-2021-1810 |
Logic flaw |
Apple |
Rasmus Sten (@pajp) |
Bug Bounty | 2021-10-01 | 2023-06-13 |
2155 | Hacking YouTube With MP4 |
Logic flaw
DoS |
Google |
KeyboardWarrior (@Keyb0ardWarr10r) |
Bug Bounty | 2021-10-11 | 2023-06-13 |
2151 | Bypassing required reviews using GitHub Actions |
Privilege escalation
Logic flaw |
GitHub |
Omer Gil (@omer_gil) |
Bug Bounty | 2021-10-12 | 2023-06-13 |
2144 | Business Logic Errors - A Logic Destruction |
Logic flaw |
NA |
Jerry Shah (@Jerry) |
Bug Bounty | 2021-10-17 | 2023-06-13 |
2141 | The Speckle Umbrella story — part 2 |
Information disclosure
Logic flaw |
Google |
Imre Rad (@ImreRad) |
Bug Bounty | 2021-10-18 | 2023-06-13 |
2137 | From staging to 0 click account takeover |
Account takeover
Logic flaw |
Pinterest |
mohamad mahmoudi (@Lotus_619) |
Bug Bounty | 2021-10-19 | 2023-06-13 |
2104 | Fiverr email restriction bypassed | Bounty 100$ |
Logic flaw |
Fiverr |
Maruf Hosan |
Bug Bounty | 2021-11-04 | 2023-06-13 |
2074 | DOS attack in Yahoo, How i was able to deny new users from service? |
DoS
Logic flaw |
Yahoo! / Verizon Media |
Mostafa Mamdoh |
Bug Bounty | 2021-11-16 | 2023-06-13 |
2062 | Hacking Apple Security Report System |
Logic flaw
Social engineering |
Apple |
HackrzVijay (@hackrzvijay) |
Bug Bounty | 2021-11-20 | 2023-06-13 |
2035 | P1 _Bug in Apple that phase “old is Gold |
Logic flaw |
Apple |
Saurabh Sankhwar (@mr_encryption) |
Bug Bounty | 2021-12-01 | 2023-06-13 |
2028 | Disclose Ad Accounts linked with Instagram Accounts |
Information disclosure
Logic flaw
GraphQL |
Meta / Facebook |
Naveen (@NaveenHax) |
Bug Bounty | 2021-12-02 | 2023-06-13 |
1970 | How I Bypassed Netflix Profile Lock? |
Logic flaw |
Netflix |
Krishnadev P Melevila (@Krishnadev_P_M) |
Bug Bounty | 2021-12-27 | 2023-06-13 |