Loading HuntDB...

Weblate - HackerOne Reports

View on HackerOne
147
Total Reports
0
Critical
3
High
20
Medium
61
Low
Medium
Weakness: Cross-Site Request Forgery (CSRF)

Directory Listing

Reported by: red_horse | Disclosed:
Weakness: Cleartext Storage of Sensitive Information
Weakness: Cross-site Scripting (XSS) - Generic
Weakness: OS Command Injection
Weakness: Violation of Secure Design Principles
Weakness: Cross-site Scripting (XSS) - Stored
Weakness: Open Redirect

Content Spoofing

Reported by: 0xspade | Disclosed:
Low

No BruteForce Protection

Reported by: jaypatel | Disclosed:
Medium
Weakness: Improper Restriction of Authentication Attempts
Weakness: Weak Cryptography for Passwords
Weakness: Uncontrolled Resource Consumption

CSRF : Reset API

Reported by: jaypatel | Disclosed:
Low
Weakness: Cross-Site Request Forgery (CSRF)
Weakness: Improper Access Control - Generic
Weakness: Improper Authentication - Generic

Insecure Account Removal

Reported by: japz | Disclosed:
Low
Weakness: Violation of Secure Design Principles
Weakness: Inadequate Encryption Strength
Previous Page 4 of 8 Next