284 | Easy $$$ via API params manipulation leading to bypassing the email verification block |
Mass assignment
Email verification bypass |
NA |
Fares Walid (@SirBagoza) |
Bug Bounty | 2023-03-18 | 2023-06-13 |
281 | JMX Exploitation Revisited |
RCE
JMX |
NA |
Markus Wulftange (@mwulftange) |
Bug Bounty | 2023-03-20 | 2023-06-13 |
277 | How I got access to Essilor International company customer PII INFO by AWS metadata access through SSRF |
SSRF |
NA |
Santosh Kumar Sha (@killmongar1996) |
Bug Bounty | 2023-03-21 | 2023-06-13 |
276 | Windows Installer EOP (CVE-2023-21800) |
Local Privilege Escalation |
Microsoft (Windows) |
Adrian Denkiewicz |
Bug Bounty | 2023-03-21 | 2023-06-13 |
275 | PHP Filter Chains: File Read From Error-based Oracle |
Arbitrary file read
LFI
PHP filter chain |
NA |
Rémi Matasse (@_remsio_) |
Bug Bounty | 2023-03-21 | 2023-06-13 |
274 | Improper Privilege Management in Grails Spring Security Core <= 5.1.0 (CVE-2022-41923) |
Privilege escalation
Authorization bypass |
Grails |
Benjamin Sepe (@Butanal_C4H8O) |
Bug Bounty | 2023-03-21 | 2023-06-13 |
273 | Expression DoS Vulnerability Found In Spring - CVE-2023-20861 |
DoS |
Spring |
Dan Glendowne |
Bug Bounty | 2023-03-22 | 2023-06-13 |
272 | Story of a Beautiful Account Takeover. |
Account takeover
OTP bypass |
NA |
Ambush Neupane (@N_ambush) |
Bug Bounty | 2023-03-23 | 2023-06-13 |
271 | Finding Initial Access on a real life Penetration Test |
Old components with known vulnerabilities
Internal pentest
RCE |
NA |
Warren Butterworth (@w88ugs) |
Bug Bounty | 2023-03-23 | 2023-06-13 |
269 | Exploiting prototype pollution in Node without the filesystem |
Server-side prototype pollution
RCE |
NA |
Gareth Heyes (@garethheyes) |
Bug Bounty | 2023-03-23 | 2023-06-13 |
268 | Joomla! CVE-2023-23752 to Code Execution |
Broken Access Control
RCE |
Joomla! |
Jacob Baines (@Junior_Baines) |
Bug Bounty | 2023-03-23 | 2023-06-13 |
266 | CVE-2023–1410 : Stored XSS in the Graphite Function Description tooltip |
Stored XSS |
Grafana Labs |
Aswin K V (@deep_marketer_) |
Bug Bounty | 2023-03-25 | 2023-06-13 |
265 | How I escalated default credentials to Remote Code Execution |
Default credentials
RCE |
NA |
Pawan Chhabria (@heybenchmarkkk) |
Bug Bounty | 2023-03-26 | 2023-06-13 |
261 | Dynamic Linking Injection and LOLBAS Fun |
DLL Hijacking
Dynamic-linking injection
Local Privilege Escalation |
NA |
Joseph Henry |
Bug Bounty | 2023-03-28 | 2023-06-13 |
258 | A short tell of LFI from PDF link → Professor the Hunter |
LFI |
NA |
Professor the Hunter (@bughuntar) |
Bug Bounty | 2023-03-29 | 2023-06-13 |
256 | I’d TAP That Pass |
Azure AD
Cloud
OAuth |
NA |
Daniel Heinsen (@hotnops) |
Bug Bounty | 2023-03-29 | 2023-06-13 |
255 | BingBang: The AAD misconfiguration that led to Bing.com results manipulation and account takeover explained |
Account takeover
Azure AD
Cloud
XSS
Privilege escalation |
Microsoft (Bing) |
Hillai Ben-Sasson (@hillai) |
Bug Bounty | 2023-03-29 | 2023-06-13 |
253 | Hacking Admin Panel & Getting free subscription |
Exposed registration API
Privilege escalation
Account takeover |
NA |
Zeeshan Mustafa (@by6153) |
Bug Bounty | 2023-03-29 | 2023-06-13 |
252 | CVE-2022-37734: graphql-java Denial-of-Service |
GraphQL
DoS
Security code review |
graphql-java |
Artem Logutov |
Bug Bounty | 2023-03-30 | 2023-06-13 |
251 | Riding the Azure Service Bus (Relay) into Power Platform |
RCE
Cross-tenant vulnerability
Cloud
Insecure deserialization |
Microsoft (Azure) |
Nick Landers (@monoxgas) |
Bug Bounty | 2023-03-30 | 2023-06-13 |
250 | Found SSRF and LFI in Just 10 minutes of using burp! |
SSRF
LFI |
NA |
Khaled Mohamed (@0xElkomy) |
Bug Bounty | 2023-03-30 | 2023-06-13 |
248 | Super FabriXss: From XSS to an RCE in Azure Service Fabric Explorer by Abusing an Event Tab Cluster Toggle (CVE-2023-23383) |
RCE
XSS
Cloud |
Microsoft (Azure) |
Lidor Ben Shitrit |
Bug Bounty | 2023-03-30 | 2023-06-13 |
246 | Exploiting Hibernate Injection in "Order by" Clause (Oracle database) |
HQL injection |
NA |
Mannu Linux (@IndiShell1046) |
Bug Bounty | 2023-03-30 | 2023-06-13 |
245 | From an Innocent api-key to PII data |
Information disclosure
Hardcoded API keys |
NA |
g30rgy th3 d4rk (@Crypt0g30rgy) |
Bug Bounty | 2023-03-30 | 2023-06-13 |
244 | Exposed Docker Registries Server as Critical Reminder on Container Security |
Docker Registry |
NA |
Emad Shawky |
Bug Bounty | 2023-03-31 | 2023-06-13 |