1648 | Meta%27s SparkAR RCE Via ZIP Path Traversal |
RCE
Path traversal |
Meta / Facebook |
Fady Othman (@Fady_Othman) |
Bug Bounty | 2022-04-07 | 2023-06-13 |
1627 | Bypass Rate Limit — A blank space leads to this random encounter! |
Password reset
Rate limiting bypass |
NA |
Roxst4r (@mveswar98) |
Bug Bounty | 2022-04-14 | 2023-06-13 |
1593 | Encrypting our way to SSRF in VMWare Workspace One UEM (CVE-2021-22054) |
SSRF |
VMware |
Keiran Sampson (@hpy_downunder) |
Bug Bounty | 2022-04-27 | 2023-06-13 |
1445 | Hacking into the worldwide Jacuzzi SmartTub network |
SPA
Android
JWT
Privilege escalation
Mass assignment |
Jacuzzi Group
SmartTub |
Eaton Z. (@XeEaton) |
Bug Bounty | 2022-06-20 | 2023-06-13 |
1381 | How we have pwned Root-Me in 2022 |
XSS
CSRF
RCE |
SPIP |
SpawnZii (@SpawnZii) |
Bug Bounty | 2022-07-12 | 2023-06-13 |
1364 | How I spammed a Google meet (But for good) |
DoS |
Google |
Shaunak (SHA25) |
Bug Bounty | 2022-07-15 | 2023-06-13 |
1286 | How I earned 500$ by uploading a file: write-up of one of my first bug bounty |
Unrestricted file upload |
Semrush |
Riccardo Malatesta (@seeu_inspace) |
Bug Bounty | 2022-08-02 | 2023-06-13 |
1277 | CVE-2022-31660 and CVE-2022-31661 (FIXED): VMware Workspace ONE Access, Identity Manager, and vRealize Automation LPE |
Local Privilege Escalation |
VMware |
Spencer McIntyre (@zeroSteiner) |
Bug Bounty | 2022-08-05 | 2023-06-13 |
1265 | Dancing on the architecture of VMware Workspace ONE Access (ENG) |
Authentication bypass
SQL injection
RCE |
VMware |
Petrus Viet (@VietPetrus) |
Bug Bounty | 2022-08-09 | 2023-06-13 |
1245 | IAM Whoever I Say IAM :: Infiltrating VMWare Workspace ONE Access Using a 0-Click Exploit |
Authentication bypass
Information disclosure
CSRF
RCE
Local Privilege Escalation |
VMware |
Steven Seeley (@steventseeley) |
Bug Bounty | 2022-08-11 | 2023-06-13 |
1207 | You Have One New Appwntment: Exploiting iCalendar Properties in Enterprise Applications |
XSS
SMTP injection |
VMware
Synology
Apple
Microsoft
Google
NextCloud |
Eugene Lim (@spaceraccoonsec) |
Bug Bounty | 2022-08-18 | 2023-06-13 |
1169 | Improper Input Validation Leads To Email Spamming |
Email content injection |
NA |
Akshay Ravi (@AKSHAYC09YC47) |
Bug Bounty | 2022-08-27 | 2023-06-13 |
1158 | Exploiting Improper Validation of Amazon Simple Notification Service SigningCertUrl |
Authorization flaw
Signature validation bypass |
Amazon |
Eugene Lim (@spaceraccoonsec) |
Bug Bounty | 2022-08-30 | 2023-06-13 |
1143 | Azure Synapse: Local Privilege Escalation Vulnerability in Spark |
Race condition
Local Privilege Escalation
Cloud |
Microsoft |
Tzah Pahima (@TzahPahima) |
Bug Bounty | 2022-09-01 | 2023-06-13 |
1024 | Two RCEs are better than one: write-up of an interesting lateral movement |
Local Privilege Escalation
RCE |
NA |
Riccardo Malatesta (@seeu_inspace) |
Bug Bounty | 2022-09-28 | 2023-06-13 |
999 | Appsmith Patches Full-Read SSRF Vulnerabilities Reported by CloudSEK |
SSRF |
Appsmith |
Sparsh Kulshrestha (@d0tdotslash) |
Bug Bounty | 2022-10-05 | 2023-06-13 |
913 | Remote Code Execution by Abusing Apache Spark SQL |
SQL injection
RCE |
NA |
Colin McQueen |
Bug Bounty | 2022-10-24 | 2023-06-13 |
712 | Automate Cross-Site Scripting (XSS) exploitation with unusal events and Burp Intruder |
XSS
WAF bypass |
NA |
Riccardo Malatesta (@seeu_inspace) |
Bug Bounty | 2022-12-10 | 2023-06-13 |
695 | Privilege escalation leads to deleting other user’s account and company Workspace [Access Control] |
Privilege escalation
Broken Access Control |
NA |
Pratik Gaikwad |
Bug Bounty | 2022-12-14 | 2023-06-13 |
682 | I Hope This Sticks: Analyzing ClipboardEvent Listeners for Stored XSS |
Stored XSS
Self-XSS |
Zoom |
Eugene Lim (@spaceraccoonsec) |
Bug Bounty | 2022-12-17 | 2023-06-13 |
383 | VMware Workspace One Access |
RCE
Java Beans
Security code review |
VMware |
Steven Seeley (@steventseeley) |
Bug Bounty | 2023-02-27 | 2023-06-13 |
370 | Introducing Aladdin |
Insecure deserialization |
Microsoft (Windows) |
Lefteris Panos (@lefterispan) |
Bug Bounty | 2023-03-01 | 2023-06-13 |
335 | Unauthorized access to Codespace secrets in GitHub |
Logic flaw
Broken Access Control
Account takeover |
GitHub |
Ophion Security (@OphionSecurity) |
Bug Bounty | 2023-03-07 | 2023-06-13 |
306 | Your Browser is Not a Safe Space |
Local Privilege Escalation
Lateral movement |
NA |
Corey Ham |
Bug Bounty | 2023-03-14 | 2023-06-13 |
295 | Bypassing Character Limit - XSS Using Spanned Payload |
XSS
Account takeover |
NA |
SMHTahsin33 (@SMHTahsin33) |
Bug Bounty | 2023-03-15 | 2023-06-13 |