Zenly - HackerOne Reports
View on HackerOne5
Total Reports
0
Critical
1
High
4
Medium
0
Low
Account Takeover via SMS Authentication Flow
Reported by:
yetanotherhacker
|
Disclosed:
High
Weakness: Improper Authentication - Generic
Insecure Storage and Overly Permissive API Keys in Android App
Reported by:
ticzox
|
Disclosed:
Medium
Weakness: Cleartext Storage of Sensitive Information
Google Maps API key stored as plain text leading to DOS and financial damage
Reported by:
sdushantha
|
Disclosed:
Medium
Weakness: Cleartext Storage of Sensitive Information
Bounty: $750.00
Friend Request Flow Exposes User Data
Reported by:
yetanotherhacker
|
Disclosed:
Medium
Weakness: Privacy Violation
Subdomain Takeover of brand.zen.ly
Reported by:
mega7
|
Disclosed:
Medium
Bounty: $750.00