Channel address:
Categories:
Technologies
Language: English
Subscribers:
1.23K
Description from channel
Latest updates about disclosure bug bounty reports: tech details, impacts, bounties 📣
Rate👇
https://cutt.ly/bugpoint_rate
Feedback👇
https://cutt.ly/bugpoint_feedback
#️⃣ bug bounty disclosed reports
#️⃣ bug bounty write-ups
#️⃣ bug bounty teleg
Ratings & Reviews
Reviews can be left only by registered users. All reviews are moderated by admins.
5 stars
1
4 stars
0
3 stars
0
2 stars
0
1 stars
1
The latest Messages 17
2022-05-03 12:38:02
Blind XSS via Feedback form. https://hackerone.com/reports/1339034
Severity: High |
1,250 USD Reported To: Judge.me
Reported By: #b3hlull
State: Resolved
Disclosed: May 3, 2022, 9:36am (UTC)
109 views09:38
2022-05-03 09:44:02
Self-DoS due to template injection via email field in password reset form on access.acronis.com https://hackerone.com/reports/1265344
Severity: No Rating
Reported To: Acronis
Reported By: #sudo_bash
State: Informative
Disclosed: May 3, 2022, 6:41am (UTC)
136 views06:44
2022-05-02 00:22:02
XSS at http://nextapps.mtnonline.com/search/suggest/q/{xss payload} https://hackerone.com/reports/1244722
Severity: Medium
Reported To: MTN Group
Reported By: #homosec
State: Resolved
Disclosed: May 1, 2022, 9:20pm (UTC)
127 views21:22
2022-05-02 00:22:01
XSS at videostore.mtnonline.com/GL/*.aspx via all parameters https://hackerone.com/reports/1244731
Severity: Medium
Reported To: MTN Group
Reported By: #homosec
State: Resolved
Disclosed: May 1, 2022, 9:20pm (UTC)
130 views21:22
2022-05-01 21:08:02
Enumerate class codes via yahoo dork - Can access any course under teacher - Sensitive information leaked https://hackerone.com/reports/1514356
Severity: High
Reported To: Khan Academy
Reported By: #bughunterpol
State: Resolved
Disclosed: May 1, 2022, 6:05pm (UTC)
136 views18:08
2022-04-30 14:58:02
com.nextcloud.client bypass the protection lock in andoid app v 3.18.1 latest version. https://hackerone.com/reports/1450368
Severity: Low |
200 USD Reported To: Nextcloud
Reported By: #dashingjaved
State: Resolved
Disclosed: April 30, 2022, 11:56am (UTC)
18 views11:58
2022-04-29 20:40:02
Reflected XSS due to vulnerable version of sockjs https://hackerone.com/reports/1100326
Severity: Medium |
250 USD Reported To: Automattic
Reported By: #chip_sec
State: Resolved
Disclosed: April 29, 2022, 5:38pm (UTC)
134 views17:40
2022-04-29 20:04:01
Hardcoded AWS credentials in ███████.msi https://hackerone.com/reports/1368690
Severity: Critical
Reported To: 8x8
Reported By: #chip_sec
State: Resolved
Disclosed: April 29, 2022, 5:01pm (UTC)
147 views17:04
2022-04-29 17:08:03
Reflected XSS [██████] https://hackerone.com/reports/1309385
Severity: Medium
Reported To: U.S. Dept Of Defense
Reported By: #fdeleite
State: Resolved
Disclosed: April 29, 2022, 2:06pm (UTC)
62 views14:08
2022-04-29 17:08:02
Reflected XSS [███] https://hackerone.com/reports/1309237
Severity: Medium
Reported To: U.S. Dept Of Defense
Reported By: #fdeleite
State: Resolved
Disclosed: April 29, 2022, 2:05pm (UTC)
61 views14:08