Loading HuntDB...

Slack - HackerOne Reports

View on HackerOne
80
Total Reports
8
Critical
14
High
19
Medium
13
Low

Store XSS

Reported by: imran_hadid | Disclosed:
High
Weakness: Cross-site Scripting (XSS) - Generic

Generate new Test token

Reported by: onidnalbj | Disclosed:
Weakness: Improper Authentication - Generic
Bounty: $100.00
Weakness: Privilege Escalation
Bounty: $100.00
Weakness: Improper Authentication - Generic

Open Redirect on slack.com

Reported by: sudotop | Disclosed:
Weakness: Cross-site Scripting (XSS) - Generic
Bounty: $500.00
Weakness: Improper Authentication - Generic
Bounty: $7000.00
Weakness: Insufficiently Protected Credentials
Weakness: Cross-site Scripting (XSS) - Generic
Bounty: $500.00
Medium
Weakness: Cross-site Scripting (XSS) - Stored
Medium
Weakness: Uncontrolled Resource Consumption
Bounty: $500.00
Weakness: Server-Side Request Forgery (SSRF)
Weakness: Unrestricted Upload of File with Dangerous Type
Bounty: $1500.00
Weakness: Violation of Secure Design Principles
Weakness: Information Disclosure
Bounty: $700.00
Weakness: Improper Access Control - Generic
Weakness: Violation of Secure Design Principles
Weakness: Privilege Escalation
Bounty: $250.00
Weakness: Resource Injection
Weakness: Cross-site Scripting (XSS) - Generic
Bounty: $1000.00
Previous Page 2 of 4 Next