Loading HuntDB...

Zomato - HackerOne Reports

View on HackerOne
110
Total Reports
16
Critical
17
High
25
Medium
18
Low
Weakness: Improper Access Control - Generic

XSS on zomato.com

Reported by: spam404 | Disclosed:
Weakness: Cross-site Scripting (XSS) - Generic
Weakness: Improper Access Control - Generic
Weakness: Information Exposure Through Debug Information
Bounty: $750.00
Weakness: Cross-Site Request Forgery (CSRF)
Bounty: $50.00
Critical
Weakness: Improper Authentication - Generic
Bounty: $2000.00
Weakness: SQL Injection
Bounty: $100.00
Weakness: Insecure Direct Object Reference (IDOR)
Bounty: $250.00
Weakness: Cross-site Scripting (XSS) - Stored
Bounty: $300.00
Weakness: Forced Browsing
Weakness: Information Disclosure
Weakness: Business Logic Errors
Bounty: $2000.00
Weakness: Violation of Secure Design Principles
Weakness: Privacy Violation
Weakness: UI Redressing (Clickjacking)
Weakness: Business Logic Errors
Weakness: Failure to Sanitize Special Elements into a Different Plane (Special Element Injection)
Bounty: $150.00
Weakness: Insecure Direct Object Reference (IDOR)
Bounty: $100.00
Weakness: Cross-site Scripting (XSS) - Reflected
Bounty: $100.00
Previous Page 3 of 6 Next