Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
2670This Man Thought Opening A TXT File Is Fine, He Thought Wrong. MacOS CVE-2019-8761 MacOS HTML injection Apple Paulos Yibelo (@PaulosYibelo) Bug Bounty2021-04-022023-06-13
2623Playing With iframes: Bypassing Content-Security-Policy CSP bypass Open redirect HTML injection NA JM Sanchez / 0xEchidonut (@jmrcsnchz) Bug Bounty2021-04-202023-06-13
2579Injecting Punycode URL Within the Arbitrary Text via Comment Box In Google Photo Sharing Option HTML injection Google Divyanshu Shukla (@justm0rph3u5) Bug Bounty2021-05-052023-06-13
2544DOS & Stored HTML Injection Bug Bounty Writeup DoS HTML injection NA RiotSecurityTeam (@RiotSecTeam) Bug Bounty2021-05-192023-06-13
2470HTML Injection and a dream in Google Chrome for Linux (Write Up) HTML injection Google Evan Ricafort (@evanricafort) Bug Bounty2021-06-172023-06-13
2430Exploiting Auto-save Functionality To Steal Login Credentials HTML injection NA Saad Ahmed (@XSaadAhmedX) Bug Bounty2021-07-062023-06-13
2331Taking Over Employee Accounts by Managers with Zero Employee Interaction HTML injection NA Chaitanya Rajhans (@Chaitanya_024) Bug Bounty2021-08-122023-06-13
2324Simple HTML Injection to $250 Account takeover Mass assignment NA Ahmad Halabi (@Ahmad_Halabi_) Bug Bounty2021-08-142023-06-13
2280What would you do if Oracle’s mailing server sent you this? HTML injection Oracle I am Broot Bug Bounty2021-08-292023-06-13
2174A short story of Content Spoofing to HTML Injection in Apple using Dangling Markup Injection HTML injection Dangling Markup Injection Apple Rishu Ranjan (@tweetit_rrj) Bug Bounty2021-10-032023-06-13
2086From URL dumps digging to IDOR , BAC, Massive Phishing in Udemy Broken Access Control Information disclosure IDOR HTML injection Udemy Mostafa Mamdoh Bug Bounty2021-11-122023-06-13
1921Xiaomi Execute Arbitrary JavaScript XSS HTML injection Android Xiaomi Neil Mark Ochea (@nmochea) Bug Bounty2022-01-132023-06-13
1780SSRF & LFI In Uploads Feature SSRF LFI HTML injection NA Raymond Lind Bug Bounty2022-02-262023-06-13
1739Party time: Injecting code into Teleparty extension HTML injection Open redirect Browser extension hacking Teleparty Wladimir Palant (@WPalant) Bug Bounty2022-03-142023-06-13
1644XSS | HTML Injection and File Upload Bypass in HUAWEI Subdomain XSS HTML injection Huawei Ahmed Hassan Bug Bounty2022-04-102023-06-13
1640SVG SSRFs and saga of bypasses SSRF HTML injection NA Preetham Bomma (@cyber01_) Bug Bounty2022-04-112023-06-13
1494Security Vulnerability in GitLab: Sending Arbitrary Requests through Jupyter Notebooks HTML injection GitLab Daniel Fürst (@DnlFrst) Bug Bounty2022-06-072023-06-13
1489De-Anonymization attacks against Proton services Privacy issue Information disclosure HTML injection Local Privilege Escalation Proton AG Ruben Santamarta (@reversemode) Bug Bounty2022-06-082023-06-13
1423HTML and Hyperlink Injection via Share Option In Microsoft Onenote Application HTML injection Phishing Microsoft Divyanshu Shukla (@justm0rph3u5) Bug Bounty2022-06-282023-06-13
1389stored XSS and stored HTML Injection in United Nations Website XSS HTML injection United Nations Ahmed Hassan Bug Bounty2022-07-082023-06-13
1370Microsoft Teams — Cross Site Scripting (XSS) Bypass CSP XSS CSP bypass HTML injection Microsoft Numan Turle (@numanturle) Bug Bounty2022-07-132023-06-13
1292How I Earned €150 in 2 Minutes | HTML injection in email HTML injection NA Thillai Raj Bug Bounty2022-07-302023-06-13
1266Bypassed Cloudflare’s Web Application Firewall (WAF) XSS HTML injection WAF bypass NA Ansh Vaid (@anshvaid4) Bug Bounty2022-08-092023-06-13
1151HTMLI/XSS - Crafting a better PoC XSS HTML injection NA RiotSecurityTeam (@RiotSecTeam) Bug Bounty2022-08-302023-06-13
1021The forgotten IPFS vulnerabilities Web3 hacking Path traversal CORS misconfiguration HTML injection Filecoin Security tintinweb Bug Bounty2022-09-282023-06-13