Get Mystery Box with random crypto!

Bugpoint

Logo of telegram channel bugpoint — Bugpoint B
Logo of telegram channel bugpoint — Bugpoint
Channel address: @bugpoint
Categories: Technologies
Language: English
Subscribers: 1.23K
Description from channel

Latest updates about disclosure bug bounty reports: tech details, impacts, bounties 📣
Rate👇
https://cutt.ly/bugpoint_rate
Feedback👇
https://cutt.ly/bugpoint_feedback
#️⃣ bug bounty disclosed reports
#️⃣ bug bounty write-ups
#️⃣ bug bounty teleg

Ratings & Reviews

3.00

2 reviews

Reviews can be left only by registered users. All reviews are moderated by admins.

5 stars

1

4 stars

0

3 stars

0

2 stars

0

1 stars

1


The latest Messages 18

2022-04-29 17:06:03
lfi in filePathDownload parameter via ███████

https://hackerone.com/reports/1542734

Severity: High
Reported To: U.S. Dept Of Defense
Reported By: #exploitmsf
State: Resolved
Disclosed: April 29, 2022, 2:04pm (UTC)
54 views14:06
Open / Comment
2022-04-29 17:06:02
Sensitive data exposure via /secure/QueryComponent!Default.jspa endpoint on ████████

https://hackerone.com/reports/1278977

Severity: Medium
Reported To: U.S. Dept Of Defense
Reported By: #njmulsqb
State: Resolved
Disclosed: April 29, 2022, 2:03pm (UTC)
56 views14:06
Open / Comment
2022-04-29 17:02:02
SSRF due to CVE-2021-27905 in www.████████

https://hackerone.com/reports/1183472

Severity: Medium
Reported To: U.S. Dept Of Defense
Reported By: #fdeleite
State: Resolved
Disclosed: April 29, 2022, 2:00pm (UTC)
53 views14:02
Open / Comment
2022-04-29 17:00:03
██████████ vulnerable to CVE-2022-22954

https://hackerone.com/reports/1537543

Severity: Critical
Reported To: U.S. Dept Of Defense
Reported By: #null_bytes
State: Resolved
Disclosed: April 29, 2022, 1:58pm (UTC)
50 views14:00
Open / Comment
2022-04-29 17:00:02
Blind SQL Injection

https://hackerone.com/reports/771215

Severity: Medium
Reported To: U.S. Dept Of Defense
Reported By: #mido0x0x
State: Resolved
Disclosed: April 29, 2022, 1:57pm (UTC)
55 views14:00
Open / Comment
2022-04-29 16:58:02
SQL INJECTION in https://████/██████████

https://hackerone.com/reports/723044

Severity: Medium
Reported To: U.S. Dept Of Defense
Reported By: #mido0x0x
State: Resolved
Disclosed: April 29, 2022, 1:56pm (UTC)
58 views13:58
Open / Comment
2022-04-29 14:52:02
Possibility to force an admin to install recommended applications

https://hackerone.com/reports/1403614

Severity: Low | 100 USD
Reported To: Nextcloud
Reported By: #igorpyan
State: Resolved
Disclosed: April 29, 2022, 11:50am (UTC)
88 views11:52
Open / Comment
2022-04-29 14:36:02
OAUTH2 bearer not-checked for connection re-use

https://hackerone.com/reports/1552110

Severity: Medium | 2,400 USD
Reported To: Internet Bug Bounty
Reported By: #monnerat
State: Resolved
Disclosed: April 29, 2022, 11:34am (UTC)
97 views11:36
Open / Comment
2022-04-29 14:30:01
CVE-2022-22576: OAUTH2 bearer bypass in connection re-use

https://hackerone.com/reports/1526328

Severity: Medium
Reported To: curl
Reported By: #monnerat
State: Resolved
Disclosed: April 29, 2022, 11:27am (UTC)
98 views11:30
Open / Comment
2022-04-29 10:14:02
DoS via large console messages

https://hackerone.com/reports/1243724

Severity: Low | 150 USD
Reported To: Mattermost
Reported By: #thesecuritydev
State: Resolved
Disclosed: April 29, 2022, 7:11am (UTC)
62 views07:14
Open / Comment