428 | Bypassing Akamai’s Web Application Firewall Using an Injected Content-Encoding Header |
WAF bypass
CRLF injection
XSS |
Akamai |
Adam Crosser |
Bug Bounty | 2023-02-21 | 2023-06-13 |
427 | Escaping misconfigured VSCode extensions |
Path traversal
DNS rebinding
XSS
HTML injection
Webview
CSP bypass |
Microsoft (SARIF viewer & Live Preview) |
Vasco Franco |
Bug Bounty | 2023-02-21 | 2023-06-13 |
426 | Reflected Cross site scripting on reddit website (bounty awards $5000) |
Reflected XSS |
Reddit |
ShuttlerTech |
Bug Bounty | 2023-02-21 | 2023-06-13 |
405 | How I found DOM-Based XSS on Microsoft MSRC and How they fixed it |
DOM XSS |
Microsoft |
Supakiad S. (@Supakiad_Mee) |
Bug Bounty | 2023-02-23 | 2023-06-13 |
402 | Blind XSS fired on Admin panel worth $2000 |
Blind XSS |
NA |
Feri Susanto (@feribytex) |
Bug Bounty | 2023-02-24 | 2023-06-13 |
400 | Microsoft Azure Account Takeover via DOM-based XSS in Cosmos DB Explorer |
Account takeover
DOM XSS |
Microsoft (Azure) |
Ngo Wei Lin (@Creastery) |
Bug Bounty | 2023-02-24 | 2023-06-13 |
392 | How I got a $2000 bounty with RXSS |
Reflected XSS |
NA |
Hashir Sami Khan (@P4n7h3Rx) |
Bug Bounty | 2023-02-26 | 2023-06-13 |
387 | Interesting Stored XSS in sandboxed environment to Full Account Takeover |
Stored XSS
Account takeover |
NA |
Anurag__Verma |
Bug Bounty | 2023-02-27 | 2023-06-13 |
373 | Exfiltrating AWS Credentials via PDF Rendering of Unsanitized Input |
SSRF
HTML injection
XSS |
NA |
Cristi Vlad (@CristiVlad25) |
Bug Bounty | 2023-03-01 | 2023-06-13 |
372 | Abusing Hop-by-Hop Header to Chain A CRLF Injection Vulnerability |
CRLF injection
Hop-by-hop header
XSS |
NA |
Simon Bräuer (@redshark1802) |
Bug Bounty | 2023-03-01 | 2023-06-13 |
363 | The Story of My First Reflected XSS |
Reflected XSS |
NA |
Ahmed Kamal Abu_Elwafa (@AhmedKa01184061) |
Bug Bounty | 2023-03-03 | 2023-06-13 |
357 | GitHub Security Lab audited DataHub: Here’s what they found |
SSRF
Insecure deserialization
Cypher injection
Authentication bypass
Authorization bypass
XSS
Open redirect
JWT
JSON injection
Cryptographic issues
Session expiration issue
Security code review |
DataHub |
Alvaro Muñoz (@pwntester) |
Bug Bounty | 2023-03-03 | 2023-06-13 |
330 | CorePlague: Severe Vulnerabilities in Jenkins Server Lead to RCE |
RCE
XSS
Security code review |
Jenkins |
Ilay Goldman (@GoldmanIlay) |
Bug Bounty | 2023-03-08 | 2023-06-13 |
329 | Self XSS To Stored Through IDOR/ |
IDOR
Self-XSS
Stored XSS |
NA |
Arben Shala (@arbennsh) |
Bug Bounty | 2023-03-08 | 2023-06-13 |
322 | Rxss inside href attribute - Bypassing lots of weird checks to takeover accounts! |
Reflected XSS
WAF bypass |
NA |
Ashutosh Dutta (@maniacmarvel_) |
Bug Bounty | 2023-03-10 | 2023-06-13 |
317 | Account Takeover: An Epic Bug Bounty Story |
Account takeover
Self-XSS
Pre-account takeover |
NA |
Jaydev Ahire |
Bug Bounty | 2023-03-11 | 2023-06-13 |
316 | [Netflix][Smart TV] — Chaining Self-XSS with Session poisoning. |
Self-XSS
Cookie injection
Session management issue |
Netflix |
Lyubomir Tsirkov (@lyubo_tsirkov) |
Bug Bounty | 2023-03-11 | 2023-06-13 |
315 | CCAI |
XSS |
Google |
NDevTK (@ndevtk) |
Bug Bounty | 2023-03-11 | 2023-06-13 |
295 | Bypassing Character Limit - XSS Using Spanned Payload |
XSS
Account takeover |
NA |
SMHTahsin33 (@SMHTahsin33) |
Bug Bounty | 2023-03-15 | 2023-06-13 |
289 | Anatomy of a Reflected XSS: My Discovery on a Microsoft’s Subdomain |
Reflected XSS |
Microsoft |
Sawrav Chowdhury |
Bug Bounty | 2023-03-17 | 2023-06-13 |
266 | CVE-2023–1410 : Stored XSS in the Graphite Function Description tooltip |
Stored XSS |
Grafana Labs |
Aswin K V (@deep_marketer_) |
Bug Bounty | 2023-03-25 | 2023-06-13 |
264 | My Journey to Nokia Hall of Fame in just 10 minutes |
DOM XSS
Open redirect |
Nokia |
Rajdip |
Bug Bounty | 2023-03-27 | 2023-06-13 |
255 | BingBang: The AAD misconfiguration that led to Bing.com results manipulation and account takeover explained |
Account takeover
Azure AD
Cloud
XSS
Privilege escalation |
Microsoft (Bing) |
Hillai Ben-Sasson (@hillai) |
Bug Bounty | 2023-03-29 | 2023-06-13 |
254 | It’s a (SNMP) Trap: Gaining Code Execution on LibreNMS |
RCE
Stored XSS
Security code review |
LibreNMS |
Stefan Schiller (@scryh_) |
Bug Bounty | 2023-03-29 | 2023-06-13 |
248 | Super FabriXss: From XSS to an RCE in Azure Service Fabric Explorer by Abusing an Event Tab Cluster Toggle (CVE-2023-23383) |
RCE
XSS
Cloud |
Microsoft (Azure) |
Lidor Ben Shitrit |
Bug Bounty | 2023-03-30 | 2023-06-13 |