Loading HuntDB...

Rocket.Chat - HackerOne Reports

View on HackerOne
82
Total Reports
16
Critical
22
High
32
Medium
9
Low
Weakness: UI Redressing (Clickjacking)
Medium
Weakness: Code Injection
Weakness: Cleartext Transmission of Sensitive Information
Weakness: Cleartext Storage of Sensitive Information
Weakness: Cross-site Scripting (XSS) - Stored
Weakness: Cleartext Transmission of Sensitive Information
Weakness: Cleartext Storage of Sensitive Information
Weakness: Path Traversal
Weakness: Information Disclosure

Rocket.Chat Server RCE

Reported by: yuske | Disclosed:
Critical
Weakness: Command Injection - Generic

SAML authentication bypass

Reported by: tomp1 | Disclosed:
High
Weakness: Improper Authentication - Generic
Weakness: Information Disclosure
Weakness: Use of Insufficiently Random Values
Weakness: Improper Authentication - Generic
Weakness: Information Disclosure

Regex account takeover

Reported by: ghaem51 | Disclosed:
Critical
Weakness: SQL Injection
Previous Page 4 of 5 Next