Loading HuntDB...

GitLab - HackerOne Reports

View on HackerOne
248
Total Reports
33
Critical
71
High
86
Medium
41
Low
Weakness: Cross-site Scripting (XSS) - DOM

DOS via move_issue

Reported by: legit-security | Disclosed:
Medium
Weakness: Uncontrolled Resource Consumption
Bounty: $2300.00
Weakness: Cross-site Scripting (XSS) - Generic
Bounty: $13950.00
Weakness: Command Injection - Generic
Bounty: $12000.00
Weakness: Improper Access Control - Generic
Weakness: Privilege Escalation
Bounty: $200.00
Weakness: Server-Side Request Forgery (SSRF)
Weakness: Improper Access Control - Generic
Bounty: $950.00
Low
Weakness: Improper Access Control - Generic
Weakness: Information Exposure Through an Error Message
Bounty: $3500.00
Weakness: Server-Side Request Forgery (SSRF)
Bounty: $750.00
High
Weakness: Uncontrolled Resource Consumption
Bounty: $7640.00
Weakness: Cross-site Scripting (XSS) - Stored
Weakness: Cross-Site Request Forgery (CSRF)
Bounty: $3370.00
Weakness: Insecure Direct Object Reference (IDOR)
Medium
Weakness: Cross-site Scripting (XSS) - Stored
Bounty: $2000.00
Weakness: Information Disclosure
Weakness: UI Redressing (Clickjacking)

Stored-XSS on wiki pages

Reported by: yvvdwf | Disclosed:
Medium
Weakness: Cross-site Scripting (XSS) - Stored
Weakness: Violation of Secure Design Principles
Previous Page 8 of 13 Next