Loading HuntDB...

GitLab - HackerOne Reports

View on HackerOne
248
Total Reports
33
Critical
71
High
86
Medium
41
Low
Weakness: Server-Side Request Forgery (SSRF)
Bounty: $3000.00
Weakness: Improper Access Control - Generic
Bounty: $1370.00
Weakness: Cross-site Scripting (XSS) - Generic
Weakness: Information Disclosure
Weakness: Cross-site Scripting (XSS) - Stored
Medium
Weakness: Cross-Site Request Forgery (CSRF)

Cookie bomb

Reported by: moritz30 | Disclosed:
Medium
Weakness: Uncontrolled Resource Consumption
Weakness: Privacy Violation
Weakness: UI Redressing (Clickjacking)
Bounty: $3500.00
Weakness: Violation of Secure Design Principles
Weakness: Path Traversal
Bounty: $20000.00
Weakness: Improper Access Control - Generic

Path traversal, to RCE

Reported by: saltyyolk | Disclosed:
High
Weakness: Command Injection - Generic
Bounty: $12000.00
Weakness: Violation of Secure Design Principles
Bounty: $200.00
High
Weakness: Cross-site Scripting (XSS) - Stored
Weakness: Command Injection - Generic
Bounty: $33510.00
Weakness: Insecure Direct Object Reference (IDOR)
Weakness: Improper Access Control - Generic
Bounty: $1500.00
Previous Page 5 of 13 Next