Loading HuntDB...

Snapchat - HackerOne Reports

View on HackerOne
33
Total Reports
4
Critical
8
High
9
Medium
5
Low
Weakness: Improper Authentication - Generic
Weakness: Information Disclosure
Bounty: $10000.00
Weakness: Improper Access Control - Generic

RTLO char allowed in chat

Reported by: kontez | Disclosed:
Medium
Weakness: UI Redressing (Clickjacking)

Open prod Jenkins instance

Reported by: preben | Disclosed:
High
Weakness: Information Disclosure
Bounty: $15000.00
Medium
Weakness: CRLF Injection
Weakness: Violation of Secure Design Principles
Bounty: $3000.00
Weakness: Improper Access Control - Generic
Weakness: HTTP Request Smuggling
Bounty: $250.00
Weakness: Improper Authentication - Generic
Weakness: Information Disclosure
Bounty: $15000.00
Weakness: Authentication Bypass
Bounty: $7500.00
Weakness: Privilege Escalation
Weakness: Cross-site Scripting (XSS) - Generic
Weakness: Cross-site Scripting (XSS) - Generic
Bounty: $400.00
Weakness: Improper Access Control - Generic
Bounty: $500.00
Medium
Weakness: Information Exposure Through Directory Listing
Bounty: $1000.00
Weakness: Insecure Direct Object Reference (IDOR)
Bounty: $15000.00
Weakness: Privilege Escalation
Page 1 of 2 Next