Loading HuntDB...

Automattic - HackerOne Reports

View on HackerOne
131
Total Reports
9
Critical
28
High
53
Medium
22
Low
Weakness: Insufficient Session Expiration
Weakness: Uncontrolled Resource Consumption
Weakness: Privacy Violation
Weakness: Information Disclosure
Weakness: Cross-site Scripting (XSS) - Generic
Weakness: Cross-site Scripting (XSS) - Reflected
Weakness: Business Logic Errors
Weakness: Cross-site Scripting (XSS) - Stored
Weakness: Cross-site Scripting (XSS) - Reflected
Weakness: Unrestricted Upload of File with Dangerous Type
Weakness: Storing Passwords in a Recoverable Format
Weakness: Insecure Direct Object Reference (IDOR)
Weakness: SQL Injection
Weakness: Information Disclosure
Weakness: Cross-site Scripting (XSS) - Reflected
Weakness: Improper Access Control - Generic

Site-wide CSRF at Atavist

Reported by: bugra | Disclosed:
High
Weakness: UI Redressing (Clickjacking)
Previous Page 2 of 7 Next