Loading HuntDB...

Zomato - HackerOne Reports

View on HackerOne
110
Total Reports
16
Critical
17
High
25
Medium
18
Low
Weakness: Privilege Escalation
Bounty: $200.00
Weakness: Cross-site Scripting (XSS) - Stored
Weakness: Violation of Secure Design Principles
Weakness: SQL Injection
Bounty: $1000.00
Weakness: Cross-Site Request Forgery (CSRF)
Bounty: $50.00
Weakness: Insecure Direct Object Reference (IDOR)
Weakness: Cross-site Scripting (XSS) - Reflected
Weakness: Improper Restriction of Authentication Attempts

CSRF To Like/Unlike Photos

Reported by: pabster | Disclosed:
Medium
Weakness: Cross-Site Request Forgery (CSRF)
Weakness: SQL Injection
Bounty: $1000.00
Weakness: Cryptographic Issues - Generic
Bounty: $100.00
Weakness: UI Redressing (Clickjacking)
Weakness: Business Logic Errors
Bounty: $300.00
Weakness: Cross-site Scripting (XSS) - Reflected
Bounty: $100.00
Weakness: Improper Authentication - Generic
Previous Page 4 of 6 Next