1058 | Securing Developer Tools: OneDev Remote Code Execution |
RCE
SSRF
Broken Access Control
Container escape |
OneDev |
Paul Gerste |
Bug Bounty | 2022-09-20 | 2023-06-13 |
1052 | Exploiting Web3’s Hidden Attack Surface: Universal XSS on Netlify’s Next.js Library |
Universal XSS
SSRF
Open redirect
Web cache poisoning |
Netlify
Gemini
PancakeSwap
Docusign
Moonpay
Celo |
Sam Curry (@samwcyo) |
Bug Bounty | 2022-09-21 | 2023-06-13 |
1041 | Pre-Auth Remote Code Execution - Web Page Test |
RCE
SSRF |
CatchPoint |
Laluka (@TheLaluka) |
Bug Bounty | 2022-09-23 | 2023-06-13 |
1030 | Skype for Business Audit Part 2 - SKYPErimeterleak |
SSRF
Security code review |
Microsoft |
Florian Hauser (@frycos) |
Bug Bounty | 2022-09-26 | 2023-06-13 |
1026 | From nothing to AWS credentials |
SSRF |
NA |
(@darkandroider) |
Bug Bounty | 2022-09-27 | 2023-06-13 |
999 | Appsmith Patches Full-Read SSRF Vulnerabilities Reported by CloudSEK |
SSRF |
Appsmith |
Sparsh Kulshrestha (@d0tdotslash) |
Bug Bounty | 2022-10-05 | 2023-06-13 |
997 | A Deep Dive of CVE-2022–33987 (Got allows a redirect to a UNIX socket) |
SSRF |
MediaWiki |
Chaim Sanders |
Bug Bounty | 2022-10-06 | 2023-06-13 |
955 | Story about Escalation of HTML Injection to EC2 Instance credentials leak |
SSRF
HTML injection |
NA |
Harsh Tandel (@H4r5h_T4nd37) |
Bug Bounty | 2022-10-14 | 2023-06-13 |
935 | Microsoft Office Online Server Remote Code Execution |
SSRF
RCE |
Microsoft |
Manish Tanwar (@IndiShell1046) |
Bug Bounty | 2022-10-19 | 2023-06-13 |
917 | Atlassian Jira Align, Version 10.107.4 Advisory |
SSRF
Broken Access Control
Privilege escalation |
Atlassian |
Jacob Shafer (@fibbot) |
Bug Bounty | 2022-10-24 | 2023-06-13 |
915 | SSRF & LFI In Uploads Feature |
SSRF
LFI |
NA |
Raymond Lind |
Bug Bounty | 2022-10-24 | 2023-06-13 |
907 | Microsoft SharePoint Server Post-Authentication Server-Side Request Forgery vulnerability |
SSRF |
Microsoft |
Li Jiantao (@CurseRed) |
Bug Bounty | 2022-10-25 | 2023-06-13 |
904 | SSRF Bug Leads To AWS Metadata Exposure |
SSRF |
NA |
Raymond Lind |
Bug Bounty | 2022-10-26 | 2023-06-13 |
894 | AWS SSRF to Root on production instance — A bug worth 1.75Lacs |
SSRF
RCE
Password reset |
NA |
Avinash Jain (@logicbomb_1) |
Bug Bounty | 2022-10-27 | 2023-06-13 |
891 | Blind SSRF in Skype (Microsoft) |
Blind SSRF |
Microsoft |
Jayateertha Guruprasad (@JayateerthaG) |
Bug Bounty | 2022-10-28 | 2023-06-13 |
887 | Exploiting Static Site Generators: When Static Is Not Actually Static |
SSRF
XSS
Security code review |
Netlify
Gatsby |
Shubham Shah (@infosec_au) |
Bug Bounty | 2022-10-28 | 2023-06-13 |
884 | Vulnerabilities In Apache Batik Default Security Controls – SSRF And RCE Through Remote Class Loading |
SSRF
RCE |
Apache Batik |
Piotr Bazydło (@chudypb) |
Bug Bounty | 2022-10-31 | 2023-06-13 |
862 | Story of a $1k bounty — SSRF to leaking access token and other sensitive information |
SSRF |
NA |
Faique (@imfaiqu3) |
Bug Bounty | 2022-11-05 | 2023-06-13 |
849 | Chaining Path Traversal with SSRF to disclose internal git repo data in a Bank Asset |
SSRF
Path traversal |
NA |
Nikhil (niks) (@niksthehacker) |
Bug Bounty | 2021-11-09 | 2023-06-13 |
828 | Checkmk: Remote Code Execution by Chaining Multiple Bugs (1/3) |
RCE
Code injection
SSRF
Line Feed injection
Arbitrary file read
Authentication bypass
Security code review |
Checkmk |
Stefan Schiller (@scryh_) |
Bug Bounty | 2022-11-15 | 2023-06-13 |
793 | SSRF via DNS Rebinding (CVE-2022–4096) |
SSRF
DNS rebinding
TOCTOU |
Appsmith |
Basavaraj Banakar (@basu_banakar) |
Bug Bounty | 2022-11-22 | 2023-06-13 |
747 | How I found my first RCE! |
RCE
Components with known vulnerabilities
WSO2
SSRF |
NA |
302Found |
Bug Bounty | 2022-12-01 | 2023-06-13 |
742 | Multiple Vulnerabilities in Proxmox VE & Proxmox Mail Gateway |
XSS
CRLF injection
SSRF
LFI
Local Privilege Escalation
Arbitrary file read |
Proxmox |
JianTao Li (@cursered) |
Bug Bounty | 2022-12-02 | 2023-06-13 |
731 | The most underrated injection of all time — CYPHER INJECTION. How I found and exploited it ? |
Cypher injection
SSRF |
NA |
Ashutosh Dutta (@maniacmarvel_) |
Bug Bounty | 2022-12-04 | 2023-06-13 |
668 | Cisco BroadWorks CommPilot Application Software Unauthenticated Server-Side Request Forgery (CVE-2022-20951) |
SSRF
Security code review |
Cisco |
smaury (@smaury92) |
Bug Bounty | 2022-12-21 | 2023-06-13 |