Loading HuntDB...

Slack - HackerOne Reports

View on HackerOne
80
Total Reports
8
Critical
14
High
19
Medium
13
Low

XSS in gist integration

Reported by: zemnmez | Disclosed:
Weakness: Cross-site Scripting (XSS) - Generic
Bounty: $500.00
Weakness: Privilege Escalation
Weakness: Path Traversal
Bounty: $3500.00
Weakness: Violation of Secure Design Principles

Rate-limit bypass

Reported by: imnarendrabhati | Disclosed:
Weakness: Improper Authentication - Generic
Bounty: $500.00
Weakness: Server-Side Request Forgery (SSRF)
Bounty: $3500.00
High
Weakness: Cross-site Scripting (XSS) - Stored
Bounty: $4875.00
Bounty: $100.00
Weakness: Cross-Site Request Forgery (CSRF)
Bounty: $500.00
Weakness: Cross-site Scripting (XSS) - Reflected
Weakness: Business Logic Errors
Bounty: $750.00
Weakness: Cross-site Scripting (XSS) - Generic
Weakness: Privilege Escalation
Weakness: Command Injection - Generic
Bounty: $750.00
Weakness: Server-Side Request Forgery (SSRF)
Low
Weakness: Code Injection
Bounty: $250.00
Weakness: Violation of Secure Design Principles
Bounty: $100.00
Weakness: Cross-site Scripting (XSS) - Generic
Page 1 of 4 Next