873 | Gregor Samsa: Exploiting Java%27s XML Signature Verification |
Integer truncation
RCE
SAML |
OpenJDK
Apache Commons BCEL |
Felix Wilhelm (@_fel1x) |
Bug Bounty | 2022-11-02 | 2023-06-13 |
868 | Case of Admin Bypass for RCE, XSS, and Information Disclosure |
RCE
Unrestricted file upload
Stored XSS
Information disclosure |
NA |
Sam Paredes (@caffeinevulns) |
Bug Bounty | 2022-11-03 | 2023-06-13 |
867 | How I hacked into a Cambridge’s server and got appreciation letter. |
Unrestricted file upload
RCE |
Cambridge |
Prathamrajgor |
Bug Bounty | 2022-11-04 | 2023-06-13 |
861 | CVE-2022-26730 | ColorSync | Hoyt LLC |
MacOS
Memory corruption
RCE |
Apple |
David Hoyt (@h02332) |
Bug Bounty | 2022-11-05 | 2023-06-13 |
844 | Unit 42 Finds Three Vulnerabilities in OpenLiteSpeed Web Server |
RCE
OS command injection
Path traversal
Local Privilege Escalation |
LiteSpeed |
Artur Avetisyan (@3v1LMonk3y) |
Bug Bounty | 2022-11-10 | 2023-06-13 |
840 | Security and Privacy Failures in Popular 2FA Apps |
Cryptographic issues |
LastPass
Google
Twilio
Microsoft
Duo
Salesforce
Latch
Zoho |
Conor Gilsenan |
Bug Bounty | 2022-11-11 | 2023-06-13 |
838 | Silent Spring: Prototype Pollution Leads to Remote Code Execution in Node.js |
RCE
Prototype pollution
DoS |
Rocket.Chat
NPM CLI
Parse Server
Node.js |
Mikhail Shcherbakov |
Bug Bounty | 2022-11-11 | 2023-06-13 |
832 | SSD Advisory – Cisco Secure Manager Appliance remediation_request_utils SQL Injection Remote Code Execution |
SQL injection
RCE
Security code review |
Cisco |
- |
Bug Bounty | 2022-11-14 | 2023-06-13 |
828 | Checkmk: Remote Code Execution by Chaining Multiple Bugs (1/3) |
RCE
Code injection
SSRF
Line Feed injection
Arbitrary file read
Authentication bypass
Security code review |
Checkmk |
Stefan Schiller (@scryh_) |
Bug Bounty | 2022-11-15 | 2023-06-13 |
825 | Remote Code Execution in Spotify’s Backstage via vm2 Sandbox Escape (CVSS Score of 9.8) |
RCE
VM sandbox escape |
Spotify |
Gal Goldsthein (@G4lGo89) |
Bug Bounty | 2022-11-15 | 2023-06-13 |
823 | Control Your Types Or Get Pwned: Remote Code Execution In Exchange Powershell Backend |
RCE
Windows |
Checkmk |
Piotr Bazydło (@chudyPB) |
Bug Bounty | 2022-11-16 | 2023-06-13 |
821 | CVE-2022-41622 and CVE-2022-41800 (FIXED): F5 BIG-IP and iControl REST Vulnerabilities and Exposures |
CSRF
RCE
RPM Spec Injection |
F5 |
Ron Bowes (@iagox86) |
Bug Bounty | 2022-11-16 | 2023-06-13 |
808 | Remote Command Execution in a Bank Server |
RCE
Arbitrary file read
Unrestricted file upload |
NA |
Bipin Jitiya (@win3zz) |
Bug Bounty | 2022-11-18 | 2023-06-13 |
800 | My Account Takeover Writeup: $5000 |
Lack of rate limiting
Bruteforce |
NA |
MRD7 (@_mrd7_) |
Bug Bounty | 2022-11-21 | 2023-06-13 |
792 | CVE-2022-41924 - RCE in Tailscale, DNS Rebinding, and You |
RCE
DNS rebinding
Information disclosure |
Tailscale |
Jamie McClymont (@JJJollyjim) |
Bug Bounty | 2022-11-22 | 2023-06-13 |
791 | CVE-2021-40662 Chamilo LMS 1.11.14 RCE |
Stored XSS
CSRF
RCE |
Chamilo LMS |
Febin |
Bug Bounty | 2021-11-23 | 2023-06-13 |
784 | From Zero to Hero Part 1: Bypassing Intel DCM’s Authentication by Spoofing Kerberos and LDAP Responses (CVE-2022-33942) |
Authentication bypass
Kerberos
RCE
Privilege escalation
Security code review |
Intel |
Julien Ahrens (@MrTuxracer) |
Bug Bounty | 2022-11-23 | 2023-06-13 |
783 | Multiple vulnerabilities in H2O ≤ 3.32.1.3 |
Insecure deserialization
RCE
Arbitrary file read
Security code review |
H2O |
Clément Amic |
Bug Bounty | 2022-11-23 | 2023-06-13 |
782 | Contrast discovers zero-day flaw in popular Quarkus Java framework |
Drive-by attack
CSRF
RCE |
Quarkus |
Joseph Beeton |
Bug Bounty | 2022-11-23 | 2023-06-13 |
781 | Legally hacking a Government Satellite? |
Missing authentication
OS command injection
RCE |
NA |
RiotSecTeam (@RiotSecTeam) |
Bug Bounty | 2022-11-24 | 2023-06-13 |
779 | CVE-2022–43781 |
OS command injection
RCE |
Atlassian |
Petrus Viet (@VietPetrus) |
Bug Bounty | 2022-11-25 | 2023-06-13 |
770 | A Real World Example Of Classic Remote Command Execution (RCE) |
OS command injection
XSS
RCE |
NA |
Bhashit Pandya (@x30r_) |
Bug Bounty | 2022-11-26 | 2023-06-13 |
755 | Unrestricted file upload in Rocket TRUfusion Enterprise <= 7.9.6.0 |
Unrestricted file upload
Security code review
RCE |
Rocket Software |
Mehdi Elyassa |
Bug Bounty | 2022-11-30 | 2023-06-13 |
747 | How I found my first RCE! |
RCE
Components with known vulnerabilities
WSO2
SSRF |
NA |
302Found |
Bug Bounty | 2022-12-01 | 2023-06-13 |
746 | From Zero to Hero Part 2: From SQL Injection to RCE on Intel DCM (CVE-2022-21225) |
SQL injection
Kerberos
RCE
Privilege escalation
Security code review |
Intel |
Julien Ahrens (@MrTuxracer) |
Bug Bounty | 2022-12-01 | 2023-06-13 |