Loading HuntDB...

Stripo Inc - HackerOne Reports

View on HackerOne
70
Total Reports
5
Critical
12
High
43
Medium
7
Low
Weakness: Privilege Escalation
Weakness: Uncontrolled Resource Consumption
Weakness: Violation of Secure Design Principles
Weakness: Server-Side Request Forgery (SSRF)

stripo.email reflected xss

Reported by: trazer | Disclosed:
Medium
Weakness: Cross-site Scripting (XSS) - Reflected
Weakness: Misconfiguration
Weakness: Improper Access Control - Generic
Weakness: HTTP Request Smuggling
Medium
Weakness: Business Logic Errors
Weakness: Cleartext Storage of Sensitive Information
Weakness: Business Logic Errors
Medium
Weakness: Business Logic Errors
Weakness: Server-Side Request Forgery (SSRF)
Weakness: Improper Authentication - Generic
Weakness: Improper Authorization

SSRF external interaction

Reported by: 0xcharan | Disclosed:
Low
Weakness: Server-Side Request Forgery (SSRF)
Weakness: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
Weakness: Cross-site Scripting (XSS) - Stored

CORS on my.stripo.email

Reported by: nihadp | Disclosed:
Previous Page 3 of 4 Next