513 | An IDOR vulnerability often hides many others |
IDOR
GraphQL |
NA |
Allam Rachid (@blank_cold) |
Bug Bounty | 2023-02-01 | 2023-06-13 |
512 | ImageMagick: The hidden vulnerability behind your online images |
Application-level DoS
Arbitrary file read
Security code review |
ImageMagick |
Bryan Gonzalez |
Bug Bounty | 2023-02-01 | 2023-06-13 |
511 | CentreStack Disclosure |
Authentication bypass
Password reset
Unrestricted file upload
RCE |
Gladinet (CentreStack) |
Michael Rand |
Bug Bounty | 2023-02-02 | 2023-06-13 |
510 | Vulnerability Causing Deletion of All Users in CrushFTP Admin Area |
Application-level DoS |
CrushFTP |
Jean Calvin Mugabo |
Bug Bounty | 2023-02-02 | 2023-06-13 |
509 | Exploits Explained: Java JMX’s Exploitation Problems and Resolutions |
RCE |
NA |
Nicolas Krassas (@Dinosn) |
Bug Bounty | 2023-02-02 | 2023-06-13 |
508 | Pre-Auth RCE in Aspera Faspex: Case Guide for Auditing Ruby on Rails |
RCE
Security code review
Missing authentication
Insecure deserialization |
IBM |
Maxwell Garrett (@TheGrandPew) |
Bug Bounty | 2023-02-02 | 2023-06-13 |
507 | WEEKEND DESTROYER - RCE in Western Digital PR4100 NAS |
RCE
Hardcoded credentials
Privilege escalation |
Western Digital |
Pedro Ribeiro (@pedrib1337) |
Bug Bounty | 2023-02-02 | 2023-06-13 |
506 | Breaking Docker Named Pipes SYSTEMatically: Docker Desktop Privilege Escalation – Part 1 |
Local Privilege Escalation
Windows
Thick client |
Docker |
Eviatar Gerzi |
Bug Bounty | 2023-02-02 | 2023-06-13 |
505 | IDOR - Inside the Session Storage |
IDOR |
NA |
Jerry Shah (@Jerry) |
Bug Bounty | 2023-02-02 | 2023-06-13 |
504 | Host Header Injection to Complete Organization takeover |
SSRF
Host header injection
Privilege escalation |
NA |
Muhammad Umer Adeem |
Bug Bounty | 2023-02-02 | 2023-06-13 |
503 | Discovering 5 XSS Vulnerabilities In a Simple Way With Xssor.go |
Reflected XSS |
NA |
Fares Walid (@SirBagoza) |
Bug Bounty | 2023-02-02 | 2023-06-13 |
502 | WEEKEND DESTROYER - RCE in Western Digital PR4100 NAS |
RCE
Hardcoded credentials
Privilege escalation
Cryptographic issues
Security code review |
Western Digital |
Pedro Ribeiro (@pedrib1337) |
Bug Bounty | 2023-02-02 | 2023-06-13 |
501 | Azure security — Internal recon leveraging lack of access control |
Azure AD
Cloud
Security misconfiguration
Privilege escalation |
Microsoft (Azure) |
Molx32 |
Bug Bounty | 2023-02-02 | 2023-06-13 |
500 | Play with Google, Twitter, Apple, Dell |
XSS
HTML injection
IDOR
Information disclosure |
Google
Twitter
Apple
Dell |
rezaduty (@rezaduty) |
Bug Bounty | 2023-02-03 | 2023-06-13 |
499 | Authentication Bypass in Izanami Docker image 1.10.22 CVE-2023-22495 |
Authentication bypass
JWT
Security code review
Container security |
Izanami |
Raphaël Lob |
Bug Bounty | 2023-02-03 | 2023-06-13 |
498 | postMessage DOM XSS vulnerability in Gartner Peer Insights widget |
postMessage
DOM XSS |
Gartner
Gradle
LogRhythm
SentinelOne
Synopsys
Veeam
Vodafone
Black Kite
ReversingLabs
Tata Communications |
Justin Steven (@justinsteven) |
Bug Bounty | 2023-02-04 | 2023-06-13 |
497 | SSO Gadgets: Escalate (Self-)XSS to ATO |
SSO
OAuth
Account takeover
Self-XSS
Login CSRF |
NA |
Lauritz Holtmann (@_lauritz_) |
Bug Bounty | 2023-02-04 | 2023-06-13 |
496 | I was able to see likes count even though it was hidden by the victim | YouTube App 16.15.35 |
Logic flaw |
Google (Youtube) |
R ando (@Rando02355205) |
Bug Bounty | 2023-02-05 | 2023-06-13 |
495 | Easy Account Takeover on dell subdomain |
Password reset
Account takeover |
Dell |
Mohamed Fares (@_2os5) |
Bug Bounty | 2023-02-05 | 2023-06-13 |
494 | How we made $120k bug bounty in a year with good automation |
XSS
Security misconfiguration
Log4shell
Debug mode enabled |
NA |
Dawid Moczadło (@kannthu1) |
Bug Bounty | 2023-02-06 | 2023-06-13 |
493 | GoAnywhere MFT - A Forgotten Bug |
Insecure deserialization
Security code review |
Fortra (GoAnywhere) |
Florian Hauser (@frycos) |
Bug Bounty | 2023-02-06 | 2023-06-13 |
492 | Apache SCXML Remote Code Execution |
RCE
Security code review |
Apache SCXML |
pyn3rd (@pyn3rd) |
Bug Bounty | 2023-02-06 | 2023-06-13 |
491 | Discovering a weakness leading to a partial bypass of the login rate limiting in the AWS Console |
Rate limiting bypass
Bruteforce |
AWS |
Christophe Tafani-Dereeper (@christophetd) |
Bug Bounty | 2023-02-06 | 2023-06-13 |
490 | Hacking into Toyota’s global supplier management network |
Authentication bypass
Backdoor |
Toyota |
Eaton Z. (@XeEaton) |
Bug Bounty | 2023-02-06 | 2023-06-13 |
489 | A zero day for the government’s “demo servers” and internal networks |
XSS |
NA |
fopwn |
Bug Bounty | 2023-02-06 | 2023-06-13 |