Get Mystery Box with random crypto!

Bugpoint

Logo of telegram channel bugpoint — Bugpoint B
Logo of telegram channel bugpoint — Bugpoint
Channel address: @bugpoint
Categories: Technologies
Language: English
Subscribers: 1.23K
Description from channel

Latest updates about disclosure bug bounty reports: tech details, impacts, bounties 📣
Rate👇
https://cutt.ly/bugpoint_rate
Feedback👇
https://cutt.ly/bugpoint_feedback
#️⃣ bug bounty disclosed reports
#️⃣ bug bounty write-ups
#️⃣ bug bounty teleg

Ratings & Reviews

3.00

2 reviews

Reviews can be left only by registered users. All reviews are moderated by admins.

5 stars

1

4 stars

0

3 stars

0

2 stars

0

1 stars

1


The latest Messages 10

2022-06-06 09:20:02
Registered users contact information disclosure on salesforce lightning endpoint https://disposal.gsa.gov

https://hackerone.com/reports/1443654

Severity: High
Reported To: U.S. General Services Administration
Reported By: #rptl
State: Resolved
Disclosed: June 6, 2022, 6:17am (UTC)
76 views06:20
Open / Comment
2022-06-06 00:02:02
Heap overflow via HTTP/2 PUSH_PROMISE

https://hackerone.com/reports/1589847

Severity: Low
Reported To: curl
Reported By: #nyymi
State: N/A
Disclosed: June 5, 2022, 8:59pm (UTC)
132 views21:02
Open / Comment
2022-06-06 00:00:02
KRB-FTP: Security level downgrade

https://hackerone.com/reports/1590102

Severity: No Rating
Reported To: curl
Reported By: #nyymi
State: N/A
Disclosed: June 5, 2022, 8:58pm (UTC)
129 views21:00
Open / Comment
2022-06-04 21:00:02
Github Account Takeover from Docs page of `kubernetes-csi.github.io`

https://hackerone.com/reports/1434967

Severity: Low | 100 USD
Reported To: Kubernetes
Reported By: #codermak
State: Resolved
Disclosed: June 4, 2022, 5:58pm (UTC)
86 views18:00
Open / Comment
2022-06-03 20:48:03
8ybhy85kld9zp9xf84x6.imgur.com Subdomain Takeover

https://hackerone.com/reports/1527405

Severity: High | 50 USD
Reported To: Imgur
Reported By: #mr_baka
State: Resolved
Disclosed: June 3, 2022, 5:45pm (UTC)
176 views17:48
Open / Comment
2022-06-02 03:52:03
AWS Load Balancer Controller Managed Security Groups can be replaced by an unprivileged attacker

https://hackerone.com/reports/1238017

Severity: Medium | 500 USD
Reported To: Kubernetes
Reported By: #t0rr3sp3dr0
State: N/A
Disclosed: June 2, 2022, 12:49am (UTC)
145 views00:52
Open / Comment
2022-06-02 03:52:02
AWS Load Balancer Controller can be used by an attacker to modify rules of any Security Group that they are able to tag

https://hackerone.com/reports/1238482

Severity: Medium | 500 USD
Reported To: Kubernetes
Reported By: #t0rr3sp3dr0
State: N/A
Disclosed: June 2, 2022, 12:49am (UTC)
145 views00:52
Open / Comment
2022-06-02 00:06:03
Exfiltrate GDrive access token using CSRF

https://hackerone.com/reports/1468010

Severity: Medium | 1,728 USD
Reported To: Dropbox
Reported By: #staz0t
State: Resolved
Disclosed: June 1, 2022, 9:04pm (UTC)
147 views21:06
Open / Comment
2022-06-01 16:54:02
user can bypass password enforcement when federated sharing is enabled

https://hackerone.com/reports/838510

Severity: No Rating | 250 USD
Reported To: Nextcloud
Reported By: #michag86
State: Resolved
Disclosed: June 1, 2022, 1:52pm (UTC)
177 views13:54
Open / Comment
2022-06-01 00:30:03
Django debug enabled showing information about system, database, configuration files

https://hackerone.com/reports/1561377

Severity: Medium
Reported To: Glovo
Reported By: #omarelfarsaoui
State: Resolved
Disclosed: May 31, 2022, 9:28pm (UTC)
48 views21:30
Open / Comment