4972 | IDOR – Execute JavaScript into anyone account |
IDOR
Stored XSS |
Terapeak |
Shubham Gupta (@hackerspider1) |
Bug Bounty | 2017-09-21 | 2023-06-13 |
4949 | App Maker and Colaboratory: a stored Google XSS double-bill |
Stored XSS |
Google |
Yasin Soliman (@SecurityYasin) |
Bug Bounty | 2017-11-01 | 2023-06-13 |
4943 | Get your Microsoft account hijacked by simply clicking connect button -Adesh Kolte |
Stored XSS |
Microsoft |
Adesh Nandkishor kolte (@AdeshKolte) |
Bug Bounty | 2017-11-06 | 2023-06-13 |
4863 | Stored XSS on Snapchat |
Stored XSS |
Snapchat |
Mrityunjoy (@mitunjoy11) |
Bug Bounty | 2018-02-09 | 2023-06-13 |
4839 | Stored XSS, and SSRF in Google using the Dataset Publishing Language |
Stored XSS
SSRF |
Google |
Craig Arendt (@signalchaos) |
Bug Bounty | 2018-03-07 | 2023-06-13 |
4831 | Google adwords 3133.7$ Stored XSS |
Stored XSS |
Google |
Emad Shanab (@Alra3ees) |
Bug Bounty | 2018-03-21 | 2023-06-13 |
4805 | How I hacked companies related to the crypto currency and earned $60,000 |
Authorization flaw
CSRF
IDOR
Stored XSS
HTML injection |
okex.com
livecoin.net |
Max (@0xw2w) |
Bug Bounty | 2018-04-14 | 2023-06-13 |
4798 | How I got stored XSS using file upload |
Stored XSS |
NA |
gujjuboy10x00 (@vis_hacker) |
Bug Bounty | 2018-04-17 | 2023-06-13 |
4790 | Story Of a Stored XSS Bypass |
Stored XSS |
NA |
Prial Islam Khan (@prial261) |
Bug Bounty | 2018-04-21 | 2023-06-13 |
4789 | Turning Self-XSS into non-Self Stored-XSS via Authorization Issue at “PayPal Tech-Support and Brand Central Portal |
Stored XSS |
Paypal |
YoKo Kho (@YokoAcc) |
Bug Bounty | 2018-04-21 | 2023-06-13 |
4777 | Story Of a Stored XSS Bypass |
Open redirect |
Zerocopter |
Prial Islam Khan (@prial261) |
Bug Bounty | 2018-04-30 | 2023-06-13 |
4764 | Stored XSS in Yahoo and all subdomains! |
Stored XSS |
Microsoft |
Hakim Bencella (@H4kst3r) |
Bug Bounty | 2018-05-19 | 2023-06-13 |
4759 | Self-XSS + CSRF to Stored XSS |
Self-XSS
CSRF
Stored XSS |
NA |
Renwa (@RenwaX23) |
Bug Bounty | 2018-05-20 | 2023-06-13 |
4753 | Persistent XSS to Steal Passwords – Paypal |
Stored XSS |
Paypal |
Akhil Reni (@akhilreni_hs) |
Bug Bounty | 2018-05-26 | 2023-06-13 |
4749 | How I found 5 store XSS on a private program. Each worth "1,016.66$" |
Stored XSS |
NA |
Shahzad Sadiq (@ShahzadSadiq25) |
Bug Bounty | 2018-05-30 | 2023-06-13 |
4748 | Account Takeover and Blind XSS! Go Pro, get Bugs! |
IDOR
Stored XSS
Account takeover
Blind XSS |
NA |
Tabahi (@_tabahi) |
Bug Bounty | 2018-05-30 | 2023-06-13 |
4725 | The 2.5 BTC Stored XSS |
Stored XSS |
NA |
Khaled Hassan |
Bug Bounty | 2018-06-13 | 2023-06-13 |
4698 | Persistent XSS at AH.nl |
Stored XSS |
AH.nl |
Jonathan Bouman (@JonathanBouman) |
Bug Bounty | 2018-07-09 | 2023-06-13 |
4670 | Microsoft Office 365 Stored XSS |
Stored XSS |
Microsoft |
Pethuraj (@Pethuraj) |
Bug Bounty | 2018-07-29 | 2023-06-13 |
4660 | Stored XSS in GameSkinny |
Stored XSS |
GameSkinny |
Friendly (@SkeletorKeys) |
Bug Bounty | 2018-08-03 | 2023-06-13 |
4628 | Liking GitHub repositories on behalf of other users — Stored XSS in WebComponents.org |
Stored XSS |
Webcomponents.org |
Thomas Orlita (@ThomasOrlita) |
Bug Bounty | 2018-08-23 | 2023-06-13 |
4615 | $100 Bounty in 300 seconds isn’t bad !!! |
Stored XSS |
Zoho |
Rohan Chavan (@rohanchavan1918) |
Bug Bounty | 2018-08-31 | 2023-06-13 |
4614 | Pwned Together: Hacking dev.to |
Stored XSS |
Dev.to |
Antony Garand (@AntoGarand) |
Bug Bounty | 2018-08-31 | 2023-06-13 |
4605 | Write-up - Love story, from closed as informative to $3,500 USD, XSS stored in Yahoo! iOS MaiL app |
Stored XSS |
Yahoo! / Verizon Media |
Omar Espino (@omespino) |
Bug Bounty | 2018-09-07 | 2023-06-13 |
4600 | Stored XSS Vulnerability in Tumblr |
Stored XSS |
Automattic |
Anas Mahmood (@AnasIsHere) |
Bug Bounty | 2018-09-08 | 2023-06-13 |