1849 | Facebook Oauth bypass |
OAuth |
Meta / Facebook |
abdellah yaala (@yaalaab) |
Bug Bounty | 2022-02-05 | 2023-06-13 |
1791 | OAuth and PostMessage - Chaining misconfigurations for your access token. |
OAuth
postMessage
Token leak |
NA |
Suraj Disoja (@ninetyn1ne_) |
Bug Bounty | 2022-02-21 | 2023-06-13 |
1674 | Write Up – Finapi (Open Banking API) Oauth Credentials Exposed In Plain Text In Android App |
Hardcoded credentials
Android |
NA |
Omar Espino (@omespino) |
Bug Bounty | 2022-04-01 | 2023-06-13 |
1615 | Full Account Takeover via Open Redirection |
Open redirect
Token leak
Account takeover
OAuth |
NA |
vFlexo (@vflexo) |
Bug Bounty | 2022-04-17 | 2023-06-13 |
1583 | CVE-2022-25262 | JetBrains Hub single-click SAML response takeover |
Authorization flaw
SAML
OAuth |
JetBrains |
Yurii Sanin (@SaninYurii) |
Bug Bounty | 2022-05-03 | 2023-06-13 |
1556 | Forging OAuth tokens using discovered client id and client secret |
Information disclosure
Account takeover |
NA |
Basyouni (@AshrafBasyoni4) |
Bug Bounty | 2022-05-12 | 2023-06-13 |
1549 | Stealing Google Drive OAuth tokens from Dropbox |
CSRF
SSRF
Account takeover |
Dropbox |
Sivanesh Ashok (@sivaneshashok) |
Bug Bounty | 2022-05-17 | 2023-06-13 |
1395 | Account hijacking using "dirty dancing" in sign-in OAuth-flows |
OAuth
Account takeover |
NA |
Frans Rosén (@fransrosen) |
Bug Bounty | 2022-07-07 | 2023-06-13 |
1271 | 2FA Bypass via Google Identity & OAuth Login |
MFA bypass
Account takeover |
NA |
Sharat Kaikolamthuruthil (@sharp488) |
Bug Bounty | 2022-08-07 | 2023-06-13 |
1003 | Bugcrowd — Tale of multiple misconfigurations!! ❌ |
Account takeover
OAuth
OTP bypass
Password reset |
NA |
Vaibhav Lakhani |
Bug Bounty | 2022-10-04 | 2023-06-13 |
845 | How Sigstore quickly patched an upstream vulnerability |
OAuth
Account takeover
Phishing |
Sigstore
dex |
Joern Schneeweisz |
Bug Bounty | 2022-11-10 | 2023-06-13 |
785 | Dodging OAuth origin restrictions for Firebase spelunking |
OAuth
Security misconfiguration
Authentication flaw |
NA |
Aditya Saligrama (@saligrama_a) |
Bug Bounty | 2022-11-23 | 2023-06-13 |
594 | Bypassing authorization in Google Cloud Workstations [Google VRP] |
Account takeover
OAuth
URL validation bypass |
Google |
Sivanesh Ashok (@sivaneshashok) |
Bug Bounty | 2023-01-13 | 2023-06-13 |
553 | How i Hacked Scopely with “Sign in with Google” |
Account takeover
CORS misconfiguration
Client-side enforcement of server-side security
OAuth |
Scopely |
Ph.Hitachi |
Bug Bounty | 2023-01-23 | 2023-06-13 |
497 | SSO Gadgets: Escalate (Self-)XSS to ATO |
SSO
OAuth
Account takeover
Self-XSS
Login CSRF |
NA |
Lauritz Holtmann (@_lauritz_) |
Bug Bounty | 2023-02-04 | 2023-06-13 |
398 | draw.io CVEs |
SSRF
OAuth
Open redirect
Token leak
Security code review |
draw.io |
@caioluders |
Bug Bounty | 2023-02-24 | 2023-06-13 |
391 | Account Takeover worth of $5 |
OAuth
Account takeover |
NA |
Jefferson Gonzales (@gonzxph) |
Bug Bounty | 2023-02-26 | 2023-06-13 |
366 | Traveling with OAuth - Account Takeover on Booking.com |
OAuth
Account takeover
Authentication bypass
Open redirect |
Booking.com
KAYAK |
Aviad Carmel (@AviadCarmel) |
Bug Bounty | 2023-03-02 | 2023-06-13 |
294 | OAuth 2.0 Authentication Misconfiguration |
OAuth
Account takeover
Open redirect
Token leak |
NA |
Mohamed Lakhdar Metidji (@minometidjii) |
Bug Bounty | 2023-03-16 | 2023-06-13 |
256 | I’d TAP That Pass |
Azure AD
Cloud
OAuth |
NA |
Daniel Heinsen (@hotnops) |
Bug Bounty | 2023-03-29 | 2023-06-13 |
197 | User impersonation via stolen UUID code in KeyCloak (CVE-2023-0264) |
OAuth
OpenID Connect
Privilege escalation
Authentication flaw |
Keycloack |
Jordi Zayuelas i Muñoz |
Bug Bounty | 2023-04-14 | 2023-06-13 |
178 | Vulnerability Spotlight: CVE-2023-0264 |
OpenID Connect
OAuth
Authentication flaw
Privilege escalation
Security code review |
Keycloack |
Timo Müller (@mtimo44) |
Bug Bounty | 2023-04-19 | 2023-06-13 |
171 | GhostToken – Exploiting GCP application infrastructure to create invisible, unremovable trojan app on Google accounts |
Cloud
OAuth
Authorization bypass |
Google (GCP) |
Astrix Security (@AstrixSecurity) |
Bug Bounty | 2023-04-20 | 2023-06-13 |
60 | Salt Labs exposes a new vulnerability in popular OAuth framework, used in hundreds of online services |
OAuth
Account takeover |
Expo
Codeacademy.com |
Aviad Carmel (@AviadCarmel) |
Bug Bounty | 2023-05-24 | 2023-06-13 |
29 | Breaking TikTok: Our Journey to Finding an Account Takeover Vulnerability |
XSS
Account takeover
OAuth |
TikTok |
mrhavit |
Bug Bounty | 2023-06-04 | 2023-06-13 |