Writeups
Spotlight
Add Your Writeup
Blogs
Contact Us
Register
Login
Write-ups
Check The Published Writeups
Search
Reset
WDB
Title
Tags
Programs
Authors
Type
Publication
Added
346
Accessing to Data Sources of any Facebook Business account via IDOR in GraphQL
IDOR
GraphQL
Meta / Facebook
Mukund Bhuva (@MukundBhuva)
Bug Bounty
2023-03-06
2023-06-13
329
Self XSS To Stored Through IDOR/
IDOR
Self-XSS
Stored XSS
NA
Arben Shala (@arbennsh)
Bug Bounty
2023-03-08
2023-06-13
302
CVE-2023–24625 / IDOR in Faveo Service Desk
IDOR
Faveo
cupc4k3
Bug Bounty
2023-03-14
2023-06-13
290
How I chained multiple High-impact vulnerabilities to create a critical one.
Account takeover
IDOR
OTP bypass
HTTP response manipulation
NA
Vinay Jagetiya (@princej_76)
Bug Bounty
2023-03-17
2023-06-13
280
Credit card statement disclosure vulnerability in Viseca%27s eXpense portal
IDOR
Viseca
Pentagrid (@pentagridsec)
Bug Bounty
2023-03-20
2023-06-13
248
Super FabriXss: From XSS to an RCE in Azure Service Fabric Explorer by Abusing an Event Tab Cluster Toggle (CVE-2023-23383)
RCE
XSS
Cloud
Microsoft (Azure)
Lidor Ben Shitrit
Bug Bounty
2023-03-30
2023-06-13
222
Let me Unmask my next 👻
IDOR
Payment bypass
Tinder
g30rgy th3 d4rk (@Crypt0g30rgy)
Bug Bounty
2023-04-06
2023-06-13
196
From Django Debug Mode to PII Data Leak of more than 500+ Employees due Broken Access Control and IDOR
Debug mode enabled
IDOR
Information disclosure
JWT
Broken Access Control
Exposed registration page
NA
Aayush Vishnoi (@AayushVishnoi10)
Bug Bounty
2023-04-14
2023-06-13
188
[Responsible Disclosure] How we could have deleted any Linkedin post
IDOR
LinkedIn
Anand Prakash (@anandpraka_sh)
Bug Bounty
2023-04-18
2023-06-13
99
One Bug at a Time: I failed my quiz on purpose to get $1,000!
IDOR
NA
atomiczsec (@atomiczsec)
Bug Bounty
2023-05-12
2023-06-13
61
From Response To Request, Adding Your Own Variables Inside Of GraphQL Queries For Account Take Over
GraphQL
IDOR
Mass assignment
NA
Tom Neaves
Bug Bounty
2023-05-23
2023-06-13
« Previous
1
…
14
15
16