MyCrypto - HackerOne Reports
View on HackerOne10
Total Reports
0
Critical
1
High
5
Medium
3
Low
Reflected XSS { support.mycrypto.com }
Reported by:
sup3r-b0y
|
Disclosed:
Medium
Weakness: Cross-site Scripting (XSS) - Reflected
HTML Injection on https://www.mycrypto.com/
Reported by:
t-pwn
|
Disclosed:
Weakness: Code Injection
Content Spoofing or Text Injection support.mycrypto.com
Reported by:
w2w
|
Disclosed:
Low
Weakness: Phishing
The twitter accounts are linked on page but unclaimed.
Reported by:
zeroxyele
|
Disclosed:
Low
Missing SPF record for the in scope domain
Reported by:
luciann
|
Disclosed:
Medium
Weakness: Phishing
Missing SPF Records.
Reported by:
pradyumna1998
|
Disclosed:
Medium
Html injection mycrypto.com
Reported by:
w2w
|
Disclosed:
High
Weakness: Cross-site Scripting (XSS) - Generic
DOM Based XSS in mycrypto.com
Reported by:
bigshaq
|
Disclosed:
Medium
Weakness: Cross-site Scripting (XSS) - DOM
SPF Records (SMTP protection not used)
Reported by:
shantanu_kul
|
Disclosed:
Medium
Weakness: Violation of Secure Design Principles
URL is vulnerable to clickjacking
Reported by:
whitehacker18
|
Disclosed:
Low
Weakness: UI Redressing (Clickjacking)