Loading HuntDB...

Rocket.Chat - HackerOne Reports

View on HackerOne
82
Total Reports
16
Critical
22
High
32
Medium
9
Low
Medium
Weakness: UI Redressing (Clickjacking)
Weakness: Cross-site Scripting (XSS) - Reflected
Critical
Weakness: Cross-site Scripting (XSS) - Stored
Weakness: OS Command Injection
Weakness: Information Disclosure
Weakness: Improper Authentication - Generic
Weakness: Classic Buffer Overflow
Weakness: Information Disclosure
Weakness: Information Disclosure
Weakness: Code Injection
High
Weakness: Code Injection
Weakness: Improper Access Control - Generic

Account takeover via XSS

Reported by: sectex | Disclosed:
Critical
Weakness: Cross-site Scripting (XSS) - Stored
Weakness: Improper Access Control - Generic
Critical
Weakness: Improper Access Control - Generic
Weakness: OS Command Injection
Medium
Weakness: Cross-site Scripting (XSS) - DOM
Medium
Weakness: Improper Access Control - Generic
Previous Page 3 of 5 Next