Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
1823How i made 15k$ from Remote Code Execution Vulnerability Code injection RCE Self-XSS NA Abdulrahman Makki (@AMakki1337) Bug Bounty2022-02-132023-06-13
1813My First Reflected XSS Bug Bounty — Google Dork — $xxx Reflected XSS NA Proviesec (@proviesec) Bug Bounty2022-02-162023-06-13
1805Stored XSS in message.alibaba.com ($2,000) Stored XSS Alibaba R ando (@Rando02355205) Bug Bounty2022-02-182023-06-13
1799Bypassing Cloudflare’s WAF! XSS WAF bypass NA Friendly (@SkeletorKeys) Bug Bounty2022-02-192023-06-13
1795XSS in hidden input field XSS NA Faizan Elahi Bug Bounty2022-02-212023-06-13
1770CVE-2022-24948: Apache JSPWiki preauth Stored XSS to ATO Stored XSS Account takeover Apache Paulos Yibelo (@PaulosYibelo) Bug Bounty2022-03-022023-06-13
1759Circumventing Browser Security Mechanisms For SSRF SSRF XSS NA HTTPVoid (@httpvoid0x2f) Bug Bounty2022-03-082023-06-13
1743XSS through base64 encoded JSON XSS NA Aman Pareek (@aman_notsogreat) Bug Bounty2022-03-122023-06-13
1742A Tale of Open Redirection to Stored XSS Stored XSS Open redirect NA Tushar Sharma (@tusharSharma_0) Bug Bounty2022-03-122023-06-13
1732My First Bug on VDP & BBP - Bug Bounty Stored XSS NA Aditya Singh / rook1337 (@imrook1337) Bug Bounty2022-03-152023-06-13
1729How I managed to trigger XSS automatically to get critical account takeover Stored XSS NA c4rrilat0r (@c4rrilat0r) Bug Bounty2022-03-152023-06-13
1725How I was able to find 50+ Cross-site scripting (XSS) Security Vulnerabilities on Bugcrowd Public Program? XSS NA akshal(tojojo) Bug Bounty2022-03-162023-06-13
1723From XSS to RCE (dompdf 0day) XSS RCE NA Positive Security (@positive_sec) Bug Bounty2022-03-162023-06-13
1698Finding bugs to trigger Unauthenticated Command Injection in a NETGEAR router (PSV-2022–0044) XSS Arbitrary file read Authentication bypass OS command injection RCE Netgear stypr (@stereotype32) Bug Bounty2022-03-252023-06-13
1693Stealing cookies from subdomain leads to takeover user accounts at redacted.com Account takeover XSS NA Bijan Murmu (@0xBijan) Bug Bounty2022-03-272023-06-13
1692How I was able to rick roll every users on root-me.org XSS Root-Me Mizu (@kevin_mizu) Bug Bounty2022-03-272023-06-13
1681Got Access To Dota 2 Admin Panel By Exploiting In-game Feature XSS Valve Abdillah Muhamad (@abdilahrf) Bug Bounty2022-03-312023-06-13
1676Small bugs are more dangerous than you think Self-XSS Stored XSS Open redirect CSRF NA Liv Matan (@terminatorLM) Bug Bounty2022-04-012023-06-13
1672Multiple Times I Hacked Duke University With RXSS Vulnerability!!! Reflected XSS Duke University Amit Kumar (@Amitlt2) Bug Bounty2022-04-022023-06-13
1665Hacked Nokia With Reflected Cross-site Scripting Vulnerability…. Reflected XSS Nokia Amit Kumar (@Amitlt2) Bug Bounty2022-04-042023-06-13
1651SSRF and Account Takeover via XSS in ERPNext (0-day) SSRF XSS Account takeover ERPNext huli (@aszx87410) Bug Bounty2022-04-062023-06-13
1644XSS | HTML Injection and File Upload Bypass in HUAWEI Subdomain XSS HTML injection Huawei Ahmed Hassan Bug Bounty2022-04-102023-06-13
1636XSS - The LocalStorage Robbery XSS NA Jerry Shah (@Jerry) Bug Bounty2022-04-122023-06-13
1612Palisade identifies Wormable Cross-Site Scripting Vulnerability affecting Rarible’s NFT Marketplace XSS Rarible Palissade (@PalisadeLLC) Bug Bounty2022-04-182023-06-13
1611Adobe Acrobat hollowing out same-origin policy XSS SOP bypass Open redirect postMessage Adobe Wladimir Palant (@WPalant) Bug Bounty2022-04-192023-06-13