Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
2981"Important, Spoofing" - zero-click, wormable, cross-platform remote code execution in Microsoft Teams RCE Stored XSS CSP bypass CSTI Microsoft Oskars Vegeris Bug Bounty2020-12-072023-06-13
2971How i got my First Bug Bounty in Intersting Target (LFI to SXSS) LFI Stored XSS NA Ph.Hitachi Bug Bounty2020-12-112023-06-13
2920Stored XSS on Product Description [HIGH] — $400 Stored XSS NA Emanuel Beni Harijanto Bug Bounty2021-01-072023-06-13
2899How I managed to trigger a Stored-XSS in an online store with the help of Cache Poisoning Web cache poisoning Stored XSS NA Schizo! Bug Bounty2021-01-142023-06-13
2885How I was rewarded a $1000 bounty after abusing File Upload functionality to Stored XSS Vulnerability leading to credential theft of a vistor in a website. Unrestricted file upload Stored XSS NA Kunal Khubchandani (@iamkun4l) Bug Bounty2021-01-182023-06-13
2862Bragging Rights(Part 1): Short story of a bug wave IDOR Stored XSS SSRF Subdomain takeover Hardcoded credentials NA Manas Harsh (@ManasH4rsh) Bug Bounty2021-01-272023-06-13
2854Destroying Armies and Villages through Cross-Site Scripting - Bug Bounty Write-up Stored XSS InnoGames Fábio Freitas (@0xfabiof) Bug Bounty2021-01-292023-06-13
2853Broken Access Control & Stored XSS - Easy Hunt Stored XSS IDOR NA Kabeer (@iTheKabeer) Bug Bounty2021-01-292023-06-13
2840How I was able to Turn a XSS into a Account Takeover Web cache poisoning Stored XSS Account takeover OAuth Logic flaw NA Josh Fam (@Pullerze) Bug Bounty2021-02-032023-06-13
2808My first bounty (stored-xss) Stored XSS NA Karan sharma (@karansh491) Bug Bounty2021-02-142023-06-13
2807Stored XSS in icloud.com — $5000 Stored XSS NA Vishal Bharad Bug Bounty2021-02-142023-06-13
2769Poisoning your Cache for 1000$ - Approach to Exploitation Walkthrough Web cache poisoning Stored XSS NA Gal Nagli (@naglinagli) Bug Bounty2021-02-252023-06-13
2755Bragging Rights: Killing File Uploads softly Unrestricted file upload Stored XSS NA Manas Harsh (@ManasH4rsh) Bug Bounty2021-02-282023-06-13
2742Stored XSS at Trello.com Stored XSS Trello Maor Dayan (@mord1234) Bug Bounty2021-03-042023-06-13
2734Stored XSS in Google Ads Android Application— $3133.70 Stored XSS HTML injection Google Ashish Dhone (@ashketchum_16) Bug Bounty2021-03-072023-06-13
2721Finding keys under the door Stored XSS Unrestricted file upload Paytm Naveen Prakaasham K S V Bug Bounty2021-03-122023-06-13
2691Encrypted Payload -> Decrypted Execution ($600) : Stored XSS Stored XSS NA Shrirang Diwakar Bug Bounty2021-03-252023-06-13
2669Automate Cache Poisoning Vulnerability - Nuclei Web cache poisoning Stored XSS NA Mohamed Elbadry (@_melbadry9) Bug Bounty2021-04-022023-06-13
2638How I earned $$$$ through Stored XSS Stored XSS CSTI NA Harish Bug Bounty2021-04-162023-06-13
2633XSS via Exif Data - The P2 Elevator Stored XSS NA Jerry Shah (@Jerry) Bug Bounty2021-04-182023-06-13
2631Pwning your assignments: Stored XSS via GraphQL endpoint Stored XSS GraphQL NA Kartik Sharma (@dominat0r98) Bug Bounty2021-04-182023-06-13
2621DMCA.COM Hack, Full Disclosure (With Proof-of-Concept) Privilege escalation Client-side enforcement of server-side security Stored XSS Broken Access Control DMCA Joël Aviad Ossi Bug Bounty2021-04-212023-06-13
2566Stored XSS to Organisation Takeover Stored XSS NA Zaid Bhat (@zaidozaid) Bug Bounty2021-05-102023-06-13
2561How I find my first Stored XSS Stored XSS NA Filipe Azevedo (@filipaze_) Bug Bounty2021-05-132023-06-13
2526Stored XSS with two different parameters Reflected XSS NA Joel Cantu (@InfosecRintox) Bug Bounty2021-05-252023-06-13