Loading HuntDB...

DuckDuckGo - HackerOne Reports

View on HackerOne
14
Total Reports
2
Critical
7
High
5
Medium
0
Low
Weakness: Cross-site Scripting (XSS) - DOM
Medium
Weakness: Cross-site Scripting (XSS) - DOM
Critical
Weakness: XML External Entities (XXE)

SSRF on duckduckgo.com/iu/

Reported by: d0nut | Disclosed:
High
Weakness: Server-Side Request Forgery (SSRF)
High
Weakness: Business Logic Errors

DOM XSS on 50x.html page

Reported by: cujanovic | Disclosed:
High
Weakness: Cross-site Scripting (XSS) - DOM
Weakness: Cross-site Scripting (XSS) - Reflected
Weakness: Server-Side Request Forgery (SSRF)
Medium
Weakness: Cross-site Scripting (XSS) - Reflected

XSS on Videos IA

Reported by: benzetaa | Disclosed:
Medium
Weakness: Cross-site Scripting (XSS) - Stored
Medium
Weakness: Cross-site Scripting (XSS) - Reflected
Weakness: XML External Entities (XXE)