Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
2602Exploiting XSS via Markdown on Xiaomi XSS Xiaomi N45HT Bug Bounty2021-04-272023-06-13
2601Reflected DOM-based XSS on DomaiNesia XSS DomaiNesia N45HT Bug Bounty2021-04-272023-06-13
2587Chaining CSRF with XSS to deactivate Mass user accounts by single click CSRF XSS NA Santosh Kumar Sha (@killmongar1996) Bug Bounty2021-05-022023-06-13
2580XSS Through Parameter Pollution XSS HTTP parameter pollution NA Saajan Bhujel (@saajanbhujel) Bug Bounty2021-05-052023-06-13
2578XSS Through Parameter Pollution Open redirect XSS HTTP parameter pollution NA Saajan Bhujel (@saajanbhujel11) Bug Bounty2021-05-052023-06-13
2572Apple Bug bounty writeups XSS(2021) XSS Apple Takashi Suzuki Bug Bounty2021-05-072023-06-13
2566Stored XSS to Organisation Takeover Stored XSS NA Zaid Bhat (@zaidozaid) Bug Bounty2021-05-102023-06-13
2562My story of hacking Dutch Government XSS Dutch Government Tuhin Bose (@tuhin1729_) Bug Bounty2021-05-122023-06-13
2561How I find my first Stored XSS Stored XSS NA Filipe Azevedo (@filipaze_) Bug Bounty2021-05-132023-06-13
2559Blind XSS on Google Internal System Blind XSS Google Kailash (@Corrupted_brain) Bug Bounty2021-05-132023-06-13
2554Edmodo Bug Bounty Writeup XSS Edmodo Pethuraj (@Pethuraj) Bug Bounty2021-05-162023-06-13
2539XSS via postMessage in chat.mozilla.org XSS postMessage Mozilla Guilherme Keerok (@k33r0k) Bug Bounty2021-05-202023-06-13
253713 Nagios Vulnerabilities, #7 will SHOCK you! RCE Local Privilege Escalation XSS Security code review Nagios Samir Ghanem (@sam0x21r) Bug Bounty2021-05-202023-06-13
2528Chaining XSS with authentication issues to turn it into full account takeover XSS Account takeover NA N1GHTMAR3 (@n1ghtmar3_2421) Bug Bounty2021-05-242023-06-13
2526Stored XSS with two different parameters Reflected XSS NA Joel Cantu (@InfosecRintox) Bug Bounty2021-05-252023-06-13
2523How I hacked a Target again and again… OAuth Account takeover XSS Broken Access Control NA Aditya Verma (@0cirius0) Bug Bounty2021-05-272023-06-13
2519The beauty of chaining client-side bugs CRLF injection XSS CSP bypass DoS CSTI NA Master SEC (@MasterSEC_AR) Bug Bounty2021-05-292023-06-13
2507XSS in the AWS Console XSS CSP bypass CSTI AWS Nick Frichette (@frichette_n) Bug Bounty2021-06-022023-06-13
2502403 Forbidden Bypass OTP bypass Exposed registration page XSS NA th3.d1p4k (@DipakPanchal05) Bug Bounty2021-06-042023-06-13
2500Pop-Ups in a good-world XSS Imgur Guilherme Keerok (@k33r0k) Bug Bounty2021-06-042023-06-13
2496Story of my first cash bounty on hackerone. SSRF XSS NA Vedant Tekale (@_justYnot) Bug Bounty2021-06-072023-06-13
2495Joomla Password Reset Vulnerability And A Stored XSS For Full Compromise Password reset Stored XSS Privilege escalation RCE Security code review NA Adrian Tiron (@Adrian__T) Bug Bounty2021-06-072023-06-13
2477How We Are Able To Hack Any Company By Sending Message – $20,000 Bounty [CVE-2021–34506] Universal XSS Microsoft Shivam Kumar Singh (@MrRajputHacker) Bug Bounty2021-06-152023-06-13
2468How We Are Able To Hack Any Company By Sending Message - $20,000 Bounty [CVE-2021–34506] Universal XSS Microsoft Vansh Devgan (@Th3Pr0xyB0y) Bug Bounty2021-06-182023-06-13
2466Account takeover via stored XSS with arbitrary file upload Insecure file upload XSS Account takeover NA 0xbadb00da (@0xbadb00da) Bug Bounty2021-06-182023-06-13