Loading HuntDB...

RubyGems - HackerOne Reports

View on HackerOne
28
Total Reports
2
Critical
4
High
7
Medium
7
Low
Weakness: Cross-site Scripting (XSS) - Generic
Weakness: Path Traversal
Bounty: $1000.00
Weakness: Uncontrolled Resource Consumption

Invalid username updating

Reported by: jackb898 | Disclosed:
Weakness: Violation of Secure Design Principles
Weakness: Command Injection - Generic
Weakness: Command Injection - Generic
Bounty: $500.00
Weakness: Violation of Secure Design Principles
Weakness: Improper Authentication - Generic

Host Header Attac

Reported by: n_ob_o_dy | Disclosed:
Medium
Critical
Weakness: Deserialization of Untrusted Data
Bounty: $1500.00
Weakness: Open Redirect
Weakness: Path Traversal
Weakness: Inadequate Encryption Strength
Weakness: Path Traversal
Weakness: Deserialization of Untrusted Data
Critical
Weakness: Command Injection - Generic
Page 1 of 2 Next