shopify-scripts - HackerOne Reports
View on HackerOne161
Total Reports
7
Critical
36
High
13
Medium
33
Low
Exception cause SIGABRT
Reported by:
isra17
|
Disclosed:
High
Weakness: Uncontrolled Resource Consumption
ruby DoS https://www.mruby.science
Reported by:
bugdelivery
|
Disclosed:
High
Weakness: Uncontrolled Resource Consumption
Bounty: $8000.00
SIGSEGV mrb_obj_freeze() Manipulating Register RAX and RSI
Reported by:
ston3
|
Disclosed:
Low
Weakness: Memory Corruption - Generic
Invalid memory access in `mrb_str_format`
Reported by:
haquaman
|
Disclosed:
Weakness: Uncontrolled Resource Consumption
Bounty: $100.00
SIGSEGV on mruby mrb_get_args()
Reported by:
ston3
|
Disclosed:
Low
Weakness: Uncontrolled Resource Consumption
Incorrect code generation when result of NODE_NEGATE is not used
Reported by:
dkasak
|
Disclosed:
Low
Weakness: Uncontrolled Resource Consumption
Bounty: $1000.00
Invalid read in `str_replace_partial`
Reported by:
dgaletic
|
Disclosed:
Weakness: Out-of-bounds Read
Bounty: $1000.00
heap-buffer-overflow (read outside of buffer) in mrb_vm_exec()
Reported by:
geeknik
|
Disclosed:
High
Weakness: Heap Overflow
Null pointer dereferences in kh_copy_mt
Reported by:
locator
|
Disclosed:
Bounty: $800.00
Buffer overflow in mrb_time_asctime
Reported by:
haquaman
|
Disclosed:
High
Weakness: Uncontrolled Resource Consumption
Bounty: $10000.00
Heap Overflow in fiber_switch triggered from Fiber.transfer
Reported by:
avisaven
|
Disclosed:
High
Weakness: Heap Overflow
SIGABRT in sym_validate_len - symbol.c:44
Reported by:
ilsani
|
Disclosed:
Medium
Weakness: Memory Corruption - Generic
Bounty: $100.00
SIGSEGV in array_copy - array.c:71
Reported by:
ilsani
|
Disclosed:
Medium
Weakness: Memory Corruption - Generic
Bounty: $800.00
Null pointer dereference in OP_ENTER
Reported by:
dgaletic
|
Disclosed:
Low
Weakness: NULL Pointer Dereference
Bounty: $800.00
Invalid pointer dereference in OP_ENTER
Reported by:
dgaletic
|
Disclosed:
Low
Weakness: Uncontrolled Resource Consumption
Bounty: $800.00
NULL pointer dereference in `mrb_check_frozen`
Reported by:
dgaletic
|
Disclosed:
Weakness: NULL Pointer Dereference
Bounty: $1000.00
segafult in mruby's sprintf - mrb_str_format
Reported by:
aerodudrizzt
|
Disclosed:
Medium
Weakness: Uncontrolled Resource Consumption
Segmentation fault while printing backtrace
Reported by:
dgaletic
|
Disclosed:
Low
Weakness: Uncontrolled Resource Consumption
Bounty: $1000.00
A crash when an exception is caught in a caller and the receiver returned from `ensure`
Reported by:
ahmadsherif
|
Disclosed:
Invalid Pointer Reference from OP_RESCUE
Reported by:
locator
|
Disclosed:
Weakness: Uncontrolled Resource Consumption
Bounty: $800.00