Writeups
Spotlight
Add Your Writeup
Blogs
Contact Us
Register
Login
Write-ups
Check The Published Writeups
Search
Reset
WDB
Title
Tags
Programs
Authors
Type
Publication
Added
740
Pre-Auth RCE with CodeQL in Under 20 Minutes
Security code review
RCE
Command injection
Authorization flaw
pgAdmin
Florian Hauser (@frycos)
Bug Bounty
2022-12-02
2023-06-13
678
Better Make Sure Your Password Manager Is Secure
Hardcoded credentials
XSS
Cryptographic issues
Authorization flaw
Authentication bypass
Click Studios
kuekerino (@kuekerino)
Bug Bounty
2022-12-19
2023-06-13
608
Meta Quest: Attacker could make any Oculus user to follow (subscribe) him without any approval
IDOR
Authorization flaw
Meta / Facebook
Dzmitry Lukyanenka (@vulnano)
Bug Bounty
2023-01-09
2023-06-13
415
Exploiting Parameter Pollution in Golang Web Apps
Authorization flaw
HTTP parameter pollution
Concourse
VMware
Rick Ramgattie (@RRamgattie)
Bug Bounty
2023-02-22
2023-06-13
347
Exposing Users Table From a Leaky GraphQL Query
GraphQL
Authorization flaw
Broken Access Control
NA
Inderjeet Singh - encodedguy (@3nc0d3dGuY)
Bug Bounty
2023-03-06
2023-06-13
310
The Time I Hacked Google’s Manual Actions Database
Broken Access Control
Authorization flaw
Google
Tom Anthony (@TomAnthonySEO)
Bug Bounty
2023-03-13
2023-06-13
183
How Material Security Uncovered a Vulnerability in the Gmail API
Broken Access Control
Authorization flaw
Google
Chris Long (@Centurion)
Bug Bounty
2023-04-18
2023-06-13
78
A $1,000,000 bounty? The KuCoin User Information Leak
Information disclosure
Zendesk
Authorization flaw
Security misconfiguration
NA
Corben Leo (@hacker_)
Bug Bounty
2023-05-18
2023-06-13
« Previous
1
…
7
8
9