4444 | Story of Stored Xss |
XSS |
NA |
Walid Hossain (@NoobWalid) |
Bug Bounty | 2018-11-28 | 2023-06-13 |
4442 | Story about my first bug bounty |
XSS |
Alibaba |
Sudhanshu Rajbhar (@sudhanshur705) |
Bug Bounty | 2018-11-30 | 2023-06-13 |
4436 | How to accidentally find a XSS in ProtonMail iOS app |
XSS |
ProtonMail |
SecuNinja (@secuninja) |
Bug Bounty | 2018-12-04 | 2023-06-13 |
4433 | XSS to XXE in Prince v10 and below (CVE-2018-19858) |
XSS
XXE |
NA |
Corben Leo (@hacker_) |
Bug Bounty | 2018-12-05 | 2023-06-13 |
4428 | Proof Of Concept Nokia Cross Site Scripting |
XSS |
Nokia |
Adesh Nandkishor kolte (@AdeshKolte) |
Bug Bounty | 2018-12-09 | 2023-06-13 |
4426 | My first bug bounty writeup |
XSS
HTML injection |
Indeed |
Sampanna Chimoriya |
Bug Bounty | 2018-12-10 | 2023-06-13 |
4412 | XSSing Google Code-in thanks to improperly escaped JSON data |
XSS |
Google |
Thomas Orlita (@ThomasOrlita) |
Bug Bounty | 2018-12-14 | 2023-06-13 |
4409 | Self XSS to Interesting Stored XSS |
Stored XSS |
NA |
Rohan aggarwal (@nahoragg) |
Bug Bounty | 2018-12-15 | 2023-06-13 |
4405 | WordPress Privilege Escalation through Post Types |
Privilege escalation
Stored XSS
Object injection |
WordPress |
Simon Scannell (@scannell_simon) |
Bug Bounty | 2018-12-17 | 2023-06-13 |
4399 | XSS worm – A creative use of web application vulnerability |
XSS |
Swisscom |
Nicolas Heiniger (@NicolasHeiniger) |
Bug Bounty | 2018-12-21 | 2023-06-13 |
4391 | Reflected XSS on ws-na.amazon-adsystem.com(Amazon) |
Reflected XSS |
Amazon |
ssid (@newp_th) |
Bug Bounty | 2018-12-27 | 2023-06-13 |
4378 | How I stumbled upon a Stored XSS(My first bug bounty story). |
Stored XSS |
Edmodo |
Parth Shah |
Bug Bounty | 2019-01-04 | 2023-06-13 |
4374 | Stored XSS Via Alternate Text At Zendesk Support |
Stored XSS |
Zendesk |
Hariharan.s (@DJHARIZ1) |
Bug Bounty | 2019-01-06 | 2023-06-13 |
4373 | Reflected XSS ON ASUS. |
Reflected XSS |
Asus |
Thejus Krishnan |
Bug Bounty | 2019-01-06 | 2023-06-13 |
4371 | Tips for bug bounty beginners from a real life experience |
XSS
SQL injection |
YNAB |
Renaud Martinet (@karouf) |
Bug Bounty | 2019-01-08 | 2023-06-13 |
4367 | Turning Self XSS to good XSS via access control |
Stored XSS
Self-XSS |
NA |
Yusuf Yazir (@Hacklad) |
Bug Bounty | 2019-01-13 | 2023-06-13 |
4360 | XSS Through SWF file! |
Flash XSS |
NA |
Friendly (@SkeletorKeys) |
Bug Bounty | 2019-01-18 | 2023-06-13 |
4357 | Reflected XSS in Zomato |
Reflected XSS |
Zomato |
Sudhanshu Rajbhar (@sudhanshur705) |
Bug Bounty | 2019-01-21 | 2023-06-13 |
4343 | Antihack.me Blind XSS To PHP File Upload Vulnerability |
Blind XSS |
AntiHack.me |
SayCure (@SaycureIO) |
Bug Bounty | 2019-01-24 | 2023-06-13 |
4337 | Chaining Tricky OAuth Exploitation To Stored XSS |
Stored XSS
OAuth |
NA |
Rohan aggarwal (@nahoragg) |
Bug Bounty | 2019-01-27 | 2023-06-13 |
4334 | Unsecured access to personal data of a million Leo Express users |
Authorization flaw
XSS |
Leo Express |
Thomas Orlita (@ThomasOrlita) |
Bug Bounty | 2019-01-29 | 2023-06-13 |
4333 | Protonmail XSS — Stored |
Stored XSS
Bruteforce |
ProtonMail |
Chand Singh (@Chand_42) |
Bug Bounty | 2019-01-29 | 2023-06-13 |
4325 | A Unique XSS Scenario in SmartSheet || $1000 bounty |
Stored XSS |
Smartsheet |
Rohan Chavan (@rohanchavan1918) |
Bug Bounty | 2019-02-03 | 2023-06-13 |
4295 | Stored XSS on Edmodo |
Stored XSS |
Edmodo |
Rohit kumar (@rohitcoder) |
Bug Bounty | 2019-02-18 | 2023-06-13 |
4291 | Multiple Stored XSS On Tokopedia |
Stored XSS
Blind XSS |
Tokopedia |
apapedulimu / Nosa Shandy (@LocalHost31337) |
Bug Bounty | 2019-02-19 | 2023-06-13 |