Loading HuntDB...

WordPress - HackerOne Reports

View on HackerOne
82
Total Reports
4
Critical
18
High
31
Medium
19
Low
Weakness: Cross-site Scripting (XSS) - Stored
Weakness: Cross-site Scripting (XSS) - Reflected
Weakness: Cross-Site Request Forgery (CSRF)
Weakness: Cross-site Scripting (XSS) - Stored
Weakness: Violation of Secure Design Principles

CSRF on comment post

Reported by: lamscun | Disclosed:
Medium
Weakness: Cross-Site Request Forgery (CSRF)
Weakness: Cross-site Scripting (XSS) - Generic
Weakness: Cross-site Scripting (XSS) - Stored
Weakness: Cross-site Scripting (XSS) - Reflected
Weakness: Cross-site Scripting (XSS) - Stored
Weakness: Cross-site Scripting (XSS) - DOM
Weakness: Uncontrolled Resource Consumption
Weakness: Improper Access Control - Generic

Authenticated XXE

Reported by: sonarsource | Disclosed:
Medium
Weakness: XML External Entities (XXE)
Previous Page 4 of 5 Next