Loading HuntDB...

Shopify - HackerOne Reports

View on HackerOne
339
Total Reports
9
Critical
13
High
128
Medium
101
Low
Medium
Weakness: Cross-site Scripting (XSS) - DOM
Weakness: Improper Access Control - Generic
Bounty: $2900.00
Weakness: Business Logic Errors
Weakness: Cross-site Scripting (XSS) - Generic
Bounty: $500.00
Weakness: Insufficient Session Expiration
Weakness: Cross-site Scripting (XSS) - Reflected
Bounty: $3500.00
Weakness: Privilege Escalation
Weakness: Cross-site Scripting (XSS) - Stored
Bounty: $500.00
Weakness: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
Weakness: Improper Access Control - Generic
Weakness: Cross-site Scripting (XSS) - Stored
Weakness: Cross-site Scripting (XSS) - Stored
Bounty: $500.00
Weakness: Cross-site Scripting (XSS) - Stored

Stored XSS in Shopify Chat

Reported by: mosuan | Disclosed:
Low
Weakness: Cross-site Scripting (XSS) - Stored
Bounty: $500.00
Weakness: Privilege Escalation
Weakness: Cross-site Scripting (XSS) - Stored
Bounty: $5300.00
Previous Page 3 of 17 Next