Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
2344How I got Reflected Cross Site Scripting(RXSS) on Manchester Metropolitan University XSS Manchester Metropolitan University Santosh Bobade (@Santosh88267387) Bug Bounty2021-08-072023-06-13
2335Multiple Vulnerabilities In cPanel/WHM XXE Stored XSS Privilege escalation CSRF Cross-Site WebSocket Hijacking (CSWH) cPanel Adrian Tiron (@adrian__t) Bug Bounty2021-08-102023-06-13
2334OVE-20210809-0001 Visual Studio Code .ipynb Jupyter Notebook XSS (Arbitrary File Read) XSS Arbitrary file read Microsoft Justin Steven (@justinsteven) Bug Bounty2021-08-112023-06-13
23231st Bug Bounty WriteUp: Open Redirect To XSS on Login Page Open redirect XSS NA Nassim Chami (@nvccim) Bug Bounty2021-08-152023-06-13
2321Why u should use burp to test Path Traversal Vulnerability and also get RXSS Path traversal XSS CSRF Account takeover NA Yasser Mohammed (@boomneroli) Bug Bounty2021-08-162023-06-13
2315How to Hack Apple ID XSS Account takeover Apple Zemnmez (@zemnmez) Bug Bounty2021-08-172023-06-13
2307MonkeyType.com Stored Cross-Site Scripting Stored XSS Authentication bypass IDOR MonkeyType.com Tyle Butler (@tbutler0x90) Bug Bounty2021-08-222023-06-13
2306Story Of Unexpected Bugs IDOR XSS NA Neh Patel (@thecyberneh) Bug Bounty2021-08-222023-06-13
2291Reflective XSS via search box [Bypassing Cloudflare WAF]. Reflected XSS NA Friendly (@SkeletorKeys) Bug Bounty2021-08-262023-06-13
2284Cache Poisoning via SelfXSS + Path Parameter XSS Web cache poisoning NA ElMahdi Mrhassel (@ElMrhassel) Bug Bounty2021-08-282023-06-13
2279Hunting for XSS with CodeQL XSS GitLab Daniel Santos (@bananabr) Bug Bounty2021-08-292023-06-13
2265How I Found Multiple XSS in Hidden Legacy Pages XSS NA Marx Chryz Bug Bounty2021-09-022023-06-13
2264chaining bugs from self XSS to account takeover Self-XSS WAF bypass CSRF Account takeover NA Behnam Yazdanpanah (@abhiunix) Bug Bounty2021-09-022023-06-13
2262SQL injection in harvard subdomain XSS SQL injection Harvard University Brandon Roldan (@tomorrowisnew_) Bug Bounty2021-09-022023-06-13
2244SSRF in PDF export with PhantomJs SSRF XSS LFI NA أنس روبي (@xhzeem) Bug Bounty2021-09-072023-06-13
22435 Different Vulnerabilities in Google’s Threadit DOM XSS Clickjacking Privilege escalation Information disclosure Google Thomas Orlita (@ThomasOrlita) Bug Bounty2021-09-072023-06-13
2241Bug Bounty Guest Post: Local File Read via Stored XSS in The Opera Browser Stored XSS Local File Read Opera Renwa (@RenwaX23) Bug Bounty2021-09-082023-06-13
2239Account Takeover via XSS in e-signature feature worth 2500$ XSS Account takeover NA Gökhan Güzelkokar (@gkhck_) Bug Bounty2021-09-082023-06-13
2234Mistuned Part 1: Client-side XSS to Calculator and More XSS Memory corruption iOS Apple CodeColorist (@codecolorist) Bug Bounty2021-09-102023-06-13
2223Microsoft Azure Portal – Persistent Cross-Site Scripting Stored XSS Microsoft Christian Becker (@0xchrisb) Bug Bounty2021-09-152023-06-13
2218How I was able to find 100+ XSS in United nations Bug Bounty Program XSS United Nations mrpentestguy (@MR_iambatman) Bug Bounty2021-09-162023-06-13
2217Weaponizing Reflected XSS to Account Takeover XSS Account takeover NA Hassan Shahid (@pwnsauc3) Bug Bounty2021-09-162023-06-13
2209Chaining bugs for better bounties SSRF XSS Information disclosure NA Manas Harsh (@ManasH4rsh) Bug Bounty2021-09-192023-06-13
2202mXSS in support.mozilla.org XSS Mozilla Guilherme Keerok (@k33r0k) Bug Bounty2021-09-222023-06-13
2195$8,000 Bug Bounty Highlight: XSS to RCE in the Opera Browser XSS RCE Opera Renwa (@RenwaX23) Bug Bounty2021-09-242023-06-13