Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
4713How I got access to local AWS info via Jira SSRF NA Coen Goedegebure (@CoenHimself) Bug Bounty2018-06-242023-06-13
4700Server Side Request Forgery on Vanilla Forums SSRF Vanilla Forums Vikash Chaudhary (@OffensiveHunter) Bug Bounty2018-07-072023-06-13
4683Into the Borg – SSRF inside Google production network SSRF Google Enguerran Gillier (@opnsec) Bug Bounty2018-07-202023-06-13
4562Just another tale of severe bugs on a private program. Open redirect SSRF IDOR Logic flaw NA Siva Krishna Samireddi (@le4rner) Bug Bounty2018-09-282023-06-13
4554AWS takeover through SSRF in JavaScript SSRF NA Gwendal Le Coguic (@gwendallecoguic) Bug Bounty2018-10-022023-06-13
4496How Outdated JIRA Instances suffers from multiple security vulnerabilities? XSS SSRF Visma Yeasir Arafat Bug Bounty2018-11-132023-06-13
4457Exploiting SSRF like a Boss — Escalation of an SSRF to Local File Read! SSRF LFI NA Zain Sabahat (@Zain_Sabahat) Bug Bounty2018-11-222023-06-13
4396Server-side Request Forgery in OpenID support SSRF Liberapay Putra Adhari Bug Bounty2018-12-242023-06-13
4306[SSRF] Server Side Request Forgery in a private Program developers.example.com SSRF NA Mohamed Haron (@m7mdharon) Bug Bounty2019-02-142023-06-13
4296$1.000 SSRF in Slack SSRF Slack Elber Andre (@Elber333) Bug Bounty2019-02-172023-06-13
4280Chain of hacks leading to Database Compromise! LFI SSRF NA Avinash Jain (@logicbomb_1) Bug Bounty2019-02-232023-06-13
4263Vimeo SSRF with code execution potential. SSRF Vimeo Harsh Jaiswal (@rootxharsh) Bug Bounty2019-03-082023-06-13
4258Escalating SSRF to RCE SSRF RCE NA Youssef A. Mohamed (@GeneralEG64) Bug Bounty2019-03-252023-06-13
4222DownNotifier SSRF SSRF DownNotifier _m_q_t (@_m_q_t) Bug Bounty2019-04-042023-06-13
4214Old but GOLD Dot Dot Slash to Get the Flag — Uber Microservice SSRF Path traversal Account takeover Uber Ron Chan (@ngalongc) Bug Bounty2019-04-072023-06-13
4211SSRF Tips: SSRF/XSPA in Microsoft’s Bing Webmaster Central SSRF XSPA Microsoft Elber Andre (@Elber333) Bug Bounty2019-04-092023-06-13
4194PDFReacter SSRF to ROOT Level Local File Read which led to RCE SSRF RCE NA Armaan Pathan (@armaancrockroax) Bug Bounty2019-04-182023-06-13
4189Ssrf to Read Local Files and Abusing the AWS metadata SSRF NA Pratik Yadav (@PratikY9967) Bug Bounty2019-04-212023-06-13
4180The journey of Web Cache + Firewall Bypass to SSRF to AWS credentials compromise! LFI SSRF WAF bypass Cloudflare bypass NA Avinash Jain (@logicbomb_1) Bug Bounty2019-04-252023-06-13
4162ESI Injection Part 2: Abusing specific implementations ESI injection RCE SSRF HTTP header injection NA Philippe Arteau (@h3xstream) Bug Bounty2019-05-022023-06-13
4161Server Side Request Forgery(SSRF){port issue hidden approch } SSRF NA Deepak Holani (@w_hat_boy) Bug Bounty2019-05-032023-06-13
4157BLIND SSRF in *.stripe.com due to Sentry Misconfiguration Blind SSRF Stripe Oktavandi (@0ktavandi) Bug Bounty2019-05-092023-06-13
4126The Unusual Case of Status code- 301 Redirection to AWS Security Credentials Compromise SSRF RFI NA Avinash Jain (@logicbomb_1) Bug Bounty2019-06-022023-06-13
4108v1 Instance Metadata Service protections bypass SSRF Google Anthony Weems Bug Bounty2019-06-142023-06-13
4071Gain adfly SMTP access with SSRF via Gopher Protocol SSRF Adf.ly Zerb0a Bug Bounty2019-06-272023-06-13