491 | Discovering a weakness leading to a partial bypass of the login rate limiting in the AWS Console |
Rate limiting bypass
Bruteforce |
AWS |
Christophe Tafani-Dereeper (@christophetd) |
Bug Bounty | 2023-02-06 | 2023-06-13 |
486 | Code Injection via Python Sandbox Escape — how I got a shell inside a network. |
Code injection
RCE |
NA |
Viktor Mares |
Bug Bounty | 2023-02-07 | 2023-06-13 |
485 | [CVE-2023-22855] Kardex MLOG - Insecure path join to RCE via SSTI |
RCE
SSTI
Security code review |
NA |
Patrick Hener (@C1sc01) |
Bug Bounty | 2023-02-07 | 2023-06-13 |
479 | Pwn2Owning Two Hosts At The Same Time: Abusing Inductive Automation Ignition’s Custom Deserialization |
Insecure deserialization
RCE
Security code review |
Inductive Automation Ignition |
Piotr Bazydło (@chudyPB) |
Bug Bounty | 2023-02-08 | 2023-06-13 |
478 | Exploit Development – A Sincere Form of Flattery |
MS-RPC
RCE |
NA |
moth |
Bug Bounty | 2023-02-09 | 2023-06-13 |
475 | How I got $$$$ Bounty within 5 mins |
RCE
Components with known vulnerabilities |
NA |
Hashir Khan (@P4n7h3Rx) |
Bug Bounty | 2023-02-09 | 2023-06-13 |
469 | Disabling js for the win |
Unrestricted file upload
RCE |
NA |
Vuk Ivanovic |
Bug Bounty | 2023-02-10 | 2023-06-13 |
459 | Exploiting A Remote Heap Overflow With A Custom TCP Stack |
Memory corruption
RCE |
Western Digital |
Etienne Helluy-Lafont |
Bug Bounty | 2023-02-13 | 2023-06-13 |
451 | Securing Open-Source Solutions: A Study of osTicket Vulnerabilities |
Stored XSS
Reflected XSS
SQL injection
Session fixation |
osTicket |
Miguel Correia |
Bug Bounty | 2023-02-14 | 2023-06-13 |
446 | Microsoft Windows Contacts (VCF/Contact/LDAP) syslink control href attribute escape vulnerability (CVE-2022-44666) (0day). |
RCE |
Microsoft (Windows) |
j00sean (@j00sean) |
Bug Bounty | 2023-02-15 | 2023-06-13 |
442 | Server side prototype pollution, how to detect and exploit |
Server-side prototype pollution
RCE |
NA |
BitK (@BitK_) |
Bug Bounty | 2023-02-15 | 2023-06-13 |
441 | Server-side prototype pollution: Black-box detection without the DoS |
Server-side prototype pollution
RCE |
NA |
Gareth Heyes (@garethheyes) |
Bug Bounty | 2023-02-15 | 2023-06-13 |
439 | Hacking Apple: Two Successful Exploits and Positive Thoughts on their Bug Bounty Program |
RCE
Security misconfiguration |
Apple |
Joe Gregg (@infiltrateops) |
Bug Bounty | 2023-02-16 | 2023-06-13 |
437 | Facebook bug: A Journey from Code Execution to S3 Data Leak |
RCE
OS command injection |
Meta / Facebook |
Bipin Jitiya (@win3zz) |
Bug Bounty | 2023-02-16 | 2023-06-13 |
434 | Found an URL in the android application source code which lead to an IDOR |
Android
Information disclosure
IDOR |
NA |
Vengeance |
Bug Bounty | 2023-02-18 | 2023-06-13 |
424 | ClamAV Critical Patch Review |
RCE
Memory corruption
Buffer Overflow
XXE
Security code review |
ClamAV |
ONEKEY (@onekey_sec) |
Bug Bounty | 2023-02-21 | 2023-06-13 |
421 | Multiple vulnerabilities in Dell Unisphere for PowerMax vApp, VASA Provider vApp and Solutions Enabler vApp CVE-2022-45103 / CVE-2022-45104 |
Parameter injection
Arbitrary file read
RCE |
Dell |
Antoine Carrincazeaux |
Bug Bounty | 2023-02-21 | 2023-06-13 |
419 | Taking over “Google Cloud Shell” by utilizing capabilities and Kubelet |
Container escape
RCE
Kubernetes |
NA |
Chen Shiri (@ChenShiri73) |
Bug Bounty | 2023-02-21 | 2023-06-13 |
413 | Unauthenticated RCE in Goanywhere |
Insecure deserialization
RCE
Security code review |
Fortra (GoAnywhere) |
Youssef Muhammad (@yosef0x1) |
Bug Bounty | 2023-02-22 | 2023-06-13 |
407 | LogicalDOC Vulnerability Disclosure |
XXE
RCE
Command injection
Privilege escalation |
LogicalDOC |
Brett DeWall (@xbadbiddyx) |
Bug Bounty | 2023-02-23 | 2023-06-13 |
390 | The Tale of a Command Injection by Changing the Logo |
RCE
OS command injection
Unrestricted file upload
Directory listing
HTTP response manipulation |
NA |
0xrz (@omidxrz) |
Bug Bounty | 2023-02-26 | 2023-06-13 |
388 | How did I found RCE on SHAREit which rewarded $$$ bounty |
Log4shell
RCE |
SHAREit |
Suprit Pandurangi |
Bug Bounty | 2023-02-26 | 2023-06-13 |
385 | $10.000 bounty for exposed .git to RCE |
.git folder disclosure
RCE
OS command injection |
NA |
Lev Shmelev |
Bug Bounty | 2023-02-27 | 2023-06-13 |
384 | The Vulnerability That Exposed an UN Website to Remote Code Execution |
Components with known vulnerabilities
OGNL injection
RCE |
United Nations |
Mullangisashank |
Bug Bounty | 2023-02-27 | 2023-06-13 |
383 | VMware Workspace One Access |
RCE
Java Beans
Security code review |
VMware |
Steven Seeley (@steventseeley) |
Bug Bounty | 2023-02-27 | 2023-06-13 |