Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
3238Reflected XSS in Facebook’s mirror websites Reflected XSS Meta / Facebook Sudhanshu Rajbhar (@sudhanshur705) Bug Bounty2020-08-082023-06-13
3237Bug Hunting with Param Miner: Cache poisoning with XSS, a peculiar case XSS Web cache poisoning NA Vuk Ivanovic Bug Bounty2020-08-082023-06-13
3213How I got 450$ just in one Google search (SQLi + RXSS)? XSS SQL injection NA Zhenwar Hawlery Bug Bounty2020-08-162023-06-13
3210Stealing your data using XSS XSS NA Viren Pawar (@VirenPawar_) Bug Bounty2020-08-172023-06-13
3198(Shopify.com) Blind Stored XSS Via Staff Name $$$$ Stored XSS Shopify Rio Mulyadi (@riomulyadi_) Bug Bounty2020-08-192023-06-13
3197How I Found My First Bug Stored Xss and Earned My First Bounty 1000$ Stored XSS Badoo Nazmul Haque (@0xnazmul) Bug Bounty2020-08-212023-06-13
3184The Importance of keeping up to date, or how I found an interesting bug thanks to a tweet Stored XSS NA Vuk Ivanovic Bug Bounty2020-08-292023-06-13
3181Stop scratching the surface, and hack the dependencies Stored XSS NA Rotem Reiss (@rotem_reiss) Bug Bounty2020-08-312023-06-13
3177My Story With XSS XSS NA Soufiane Habti (@wld_basha) Bug Bounty2020-09-032023-06-13
3174XSS that can pay your Bills :) Reflected XSS NA Smile Hacker (@_smile_hacker_) Bug Bounty2020-09-052023-06-13
3173Never Give Up, The Story Behind a Dupe-To-Triaged XSS OAuth Account takeover NA Alan Brian (@soyelmago) Bug Bounty2020-09-062023-06-13
3169XSS->Fix->Bypass: 10000$ bounty in Google Maps XSS Google Zohar Shachar Bug Bounty2020-09-072023-06-13
3165Universal XSS in Android WebView (CVE-2020-6506) Universal XSS Google Microsoft Twitter Alesandro Ortiz (@AlesandroOrtizR) Bug Bounty2020-09-102023-06-13
3157Exploiting a "Useless" Cookie-Based XSS and Making it Useful XSS NA Daniel Thatcher (@_danielthatcher) Bug Bounty2020-09-162023-06-13
3153Reflected XSS via a hidden parameter on Dutch Gov. website Reflected XSS Dutch Government Supras (@LdrTom) Bug Bounty2020-09-192023-06-13
3145$25K Instagram Almost XSS Filter Link — Facebook Bug Bounty Stored XSS Meta / Facebook Andres Alonso (@al0nnso) Bug Bounty2020-09-202023-06-13
3132Chains on Chains: Chaining multiple low-level vulns into a Critical. Blind XSS CSP bypass Lack of rate limiting Exposed JWT generation endpoint JWT NA Daniel Marte (@Masonhck3571) Bug Bounty2020-09-262023-06-13
3126RCE on Spip and Root-Me RCE SQL injection XSS Open redirect Reflected file download SPIP Laluka (@TheLaluka) Bug Bounty2020-09-292023-06-13
3124Write Up – Google Bug Bounty: XSS To Cloud Shell Instance Takeover (Rce As Root) – $5,000 USD XSS RCE Google Omar Espino (@omespino) Bug Bounty2020-10-012023-06-13
3119Spend more time doing recon, you’ll find more BUGS. Reflected XSS Information disclosure NA Vedant Tekale (@_justYnot) Bug Bounty2020-10-032023-06-13
3109We Hacked Apple for 3 Months: Here’s What We Found RCE Authentication bypass Authorization bypass SSRF XXE Blind XSS IDOR OS command injection SQL injection Apple Sam Curry (@samwcyo) Bug Bounty2020-10-072023-06-13
3105CVE-2018–5230 | JIRA Cross Site Scripting Reflected XSS NA Paras Arora (@parasarora06) Bug Bounty2020-10-092023-06-13
3102Leveraging XSS to Read Internal Files XSS LFI NA Aditya Dixit (@zombie007o) Bug Bounty2020-10-092023-06-13
3098How I find my first P1 level Bug. $$$ XSS NA Harsh Bug Bounty2020-10-132023-06-13
3096I had fun with this XSS XSS NA yappare (@yappare) Bug Bounty2020-10-132023-06-13