2262 | SQL injection in harvard subdomain |
XSS
SQL injection |
Harvard University |
Brandon Roldan (@tomorrowisnew_) |
Bug Bounty | 2021-09-02 | 2023-06-13 |
2143 | How I Escalated a Time-Based SQL Injection to RCE |
SQL injection
RCE |
Sony |
JM Sanchez / 0xEchidonut (@jmrcsnchz) |
Bug Bounty | 2021-10-17 | 2023-06-13 |
2139 | A Scientific Notation Bug in MySQL left AWS WAF Clients Vulnerable to SQL Injection |
SQL injection
WAF bypass |
AWS |
Marc Olivier Bergeron |
Bug Bounty | 2021-10-19 | 2023-06-13 |
2131 | How i Got 3 SQL injection in just 10 minutes. |
SQL injection |
NA |
Ahmed Fatouh (@XDev05) |
Bug Bounty | 2021-10-23 | 2023-06-13 |
2096 | How I Found multiple SQL Injection with FFUF and Sqlmap in a few minutes |
SQL injection |
NA |
Mahmoud Youssef (@0xmahmoudjo0) |
Bug Bounty | 2021-11-07 | 2023-06-13 |
2073 | Diving into Open-source LMS Codebases |
Insecure file upload
Insecure deserialization
RCE
CSRF
SQL injection
Reflected XSS |
Moodle
Chamilo LMS |
Poh Jia Hao (@Chocologicall) |
Bug Bounty | 2021-11-16 | 2023-06-13 |
2056 | Moodle Blind SQL injection via MNet authentication |
SQL injection |
Moodle |
rekter0 (@rekter0) |
Bug Bounty | 2021-11-23 | 2023-06-13 |
2032 | Easy SQLi in Amazon subsidiary using Sqlmap |
SQL injection |
Amazon |
Mostafa Mamdoh |
Bug Bounty | 2021-12-01 | 2023-06-13 |
1999 | How I Bypassed Incapsula WAF By Imperva |
SQL injection |
NA |
Dawood Ikhlaq |
Bug Bounty | 2021-12-14 | 2023-06-13 |
1942 | SQL Injection - The File Upload Playground |
Unrestricted file upload
SQL injection |
NA |
Jerry Shah (@Jerry) |
Bug Bounty | 2022-01-04 | 2023-06-13 |
1924 | Pwning the portal: from database dump to session hijacking |
SQL injection
XSS
CSRF |
NA |
Bitcrack (@bitcrack_cyber) |
Bug Bounty | 2022-01-12 | 2023-06-13 |
1917 | 120 Days of High Frequency Hunting |
SSRF
LFI
Information disclosure
Broken Access Control
Authentication bypass
XSS
SQL injection |
NA |
Kuldeep Pandya (@kuldeepdotexe) |
Bug Bounty | 2022-01-15 | 2023-06-13 |
1916 | Moodle: Blind SQL Injection (CVE-2021-36393) and Broken Access Control (CVE-2021-36397) |
SQL injection
Broken Access Control |
Moodle |
0xkasper (@0xkasper) |
Bug Bounty | 2022-01-15 | 2023-06-13 |
1908 | CVE-2022-21661: Exposing Database Info Via Wordpress SQL Injection |
SQL injection |
WordPress |
ngocnb |
Bug Bounty | 2022-01-18 | 2023-06-13 |
1901 | 120 Days of Frequent Hacking |
SSRF
LFI
Information disclosure
XSS
SQL injection |
NA |
Kuldeep Pandya (@kuldeepdotexe) |
Bug Bounty | 2022-01-21 | 2023-06-13 |
1857 | A technique to semi-automatically find vulnerabilities in WordPress plugins |
XSS
SQL injection
Open redirect
CSRF |
NA |
kazet (@kazet1234) |
Bug Bounty | 2022-02-03 | 2023-06-13 |
1848 | How I found a critical P1 bug in 5 minutes using a cellphone — Bug Bounty |
SQL injection |
NA |
Mr Empy (@mr_empy) |
Bug Bounty | 2022-02-06 | 2023-06-13 |
1840 | SQL Injection, Reflected XSS and Information Disclosure in one subdomain in just 10 minutes |
SQL injection
XSS
Information disclosure |
NA |
Mahmoud Hamed (@7odamo_) |
Bug Bounty | 2022-02-08 | 2023-06-13 |
1820 | BigQuery SQL Injection Cheat Sheet |
SQL injection |
NA |
Ozgur Alp (@ozgur_bbh) |
Bug Bounty | 2022-02-14 | 2023-06-13 |
1810 | CVE-2022-0478 - WooCommerce Event-Manager Plugin SQL Injection |
SQL injection
Security code review |
Automattic (WooCommerce) |
Castilho (@castilho101) |
Bug Bounty | 2022-02-16 | 2023-06-13 |
1793 | Finding an unseen SQL Injection by bypassing escape functions in mysqljs/mysql |
SQL injection |
Oracle (MySQL) |
stypr (@stereotype32) |
Bug Bounty | 2022-02-21 | 2023-06-13 |
1786 | How I Hacked the Dutch Government with SQLi and Won the Famous T-Shirt? |
SQL injection |
Dutch Government |
Göktuğ Kaya (@g0ktugkaya) |
Bug Bounty | 2022-02-24 | 2023-06-13 |
1768 | Moodle 2nd Order Sqli |
SQL injection |
Moodle |
mufinnnnnnn (@mufinnnnnnn) |
Bug Bounty | 2022-03-02 | 2023-06-13 |
1736 | SQL Injection at Spotify |
SQL injection |
Spotify |
Eslam Akl (@eslam3kll) |
Bug Bounty | 2022-03-14 | 2023-06-13 |
1721 | My First Blind SQL Injection |
SQL injection |
NA |
T VAMSHI |
Bug Bounty | 2022-03-17 | 2023-06-13 |