Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
5150Xss filter bypass in Yahoo dev.flurry.com XSS Yahoo! / Verizon Media Shubham Gupta (@hackerspider1) Bug Bounty2016-07-312023-06-13
5149Swf XSS (Dom Based Xss) Flash XSS DOM XSS Ubiquity Networks Shubham Gupta (@hackerspider1) Bug Bounty2016-07-312023-06-13
5145Turning Self-XSS into Good XSS v2: Challenge Completed but Not Rewarded XSS Uber - Bug Bounty2016-08-292023-06-13
5141Internet Explorer has a URL problem OAuth RPO XSS GitHub Google File Descriptor (@filedescriptor) Bug Bounty2016-09-062023-06-13
5138Bug Bounty : Account Takeover Vulnerability POC OAuth Account takeover XSS NA Rakesh Mane (@RakeshMane10) Bug Bounty2016-09-162023-06-13
5134Persisting on Pornhub Stored XSS PornHub Andy Gill (@ZephrFish) Bug Bounty2016-09-232023-06-13
5133XSS Vulnerability in Twitter [https://twitter.com] (Write Up) XSS Twitter Evan Ricafort (@evanricafort) Bug Bounty2016-09-262023-06-13
5132gif it time it%27ll come to you - Finding More Holes in The Hub XSS PornHub Andy Gill (@ZephrFish) Bug Bounty2016-10-012023-06-13
5123Stored XSS in UniFi v4.8.12 Controller Stored XSS Ubiquity Networks Shubham Gupta (@hackerspider1) Bug Bounty2016-11-122023-06-13
5122Svg XSS in Unifi v5.0.2 Stored XSS Ubiquity Networks Shubham Gupta (@hackerspider1) Bug Bounty2016-11-132023-06-13
5121Bypassing Ebay XSS Protection to launch XSS by Nirmal Dahal Reflected XSS Ebay Nirmal Dahal (@TheNittam) Bug Bounty2016-11-182023-06-13
5116Cross-site-scripting on one of the largest Dutch franchisors DOM XSS Hema Tijme Gommers (@tijme) Bug Bounty2016-12-202023-06-13
5115Stealing passwords from McDonald%27s users Reflected XSS AngularJS sandbox bypass McDonalds Tijme Gommers (@tijme) Bug Bounty2017-01-092023-06-13
5103Lightweight markup: a trio of persistent XSS in GitLab Stored XSS GitLab Yasin Soliman (@SecurityYasin) Bug Bounty2017-02-152023-06-13
5101From RSS to XXE: feed parsing on Hootsuite XSS XXE Hootsuite Yasin Soliman (@SecurityYasin) Bug Bounty2017-02-172023-06-13
5096One company: 262 bugs, 100% acceptance, 2.57 priority, millions of user details saved. Stored XSS Blind XSS CSRF Account takeover IDOR NA Zseano (@zseano) Bug Bounty2017-02-252023-06-13
5092Airbnb – When Bypassing JSON Encoding, XSS Filter, WAF, CSP, and Auditor turns into Eight Vulnerabilities XSS CSP bypass Airbnb Brett Buerhaus (@bbuerhaus) Bug Bounty2017-03-082023-06-13
5090How I found a $5,000 Google Maps XSS (by fiddling with Protobuf) XSS Google Marin Moulinier Bug Bounty2017-03-092023-06-13
5086Penetrating PornHub – XSS vulns galore (plus a cool shirt!) XSS PornHub Jon Bottarini (@jon_bottarini) Bug Bounty2017-03-162023-06-13
5085Near universal XSS in McAfee Web Gateway XSS McAfee Olivier Arteau Bug Bounty2017-03-172023-06-13
5074A pair of Plotly bugs: Stored XSS and AWS Metadata SSRF Stored XSS SSRF Plotly Yasin Soliman (@SecurityYasin) Bug Bounty2017-05-252023-06-13
5073Pivoting from blind SSRF to RCE with HashiCorp Consul Blind XSS RCE NA Peter Adkins (@darkarnium) Bug Bounty2017-05-292023-06-13
5072XSS on Google{5.000$}-Google Vulnerability Reward Program (VRP) Stored XSS Google - Bug Bounty2017-05-302023-06-13
5068DOM Based XSS In Microsoft DOM XSS Microsoft Rafay Baloch (@rafaybaloch) Bug Bounty2017-06-012023-06-13
5065Stored XSS, CSRF And Clickjacking Vulnerabilities in Opera Stored XSS CSRF Clickjacking Opera Rafay Baloch (@rafaybaloch) Bug Bounty2017-06-012023-06-13