DigitalSellz - HackerOne Reports
View on HackerOne3
Total Reports
0
Critical
2
High
0
Medium
0
Low
Access to Amazon S3 bucket
Reported by:
sameoldstory
|
Disclosed:
Weakness: Violation of Secure Design Principles
AWS Signature Disclosure in www.digitalsellz.com allows access to S3
Reported by:
skorov
|
Disclosed:
High
Weakness: Improper Authentication - Generic
Public profile is vulnerable to stored XSS / Facebook Token can be stolen
Reported by:
robin_linus
|
Disclosed:
High
Weakness: Cross-site Scripting (XSS) - Generic