Get Mystery Box with random crypto!

Bugpoint

Logo of telegram channel bugpoint — Bugpoint B
Logo of telegram channel bugpoint — Bugpoint
Channel address: @bugpoint
Categories: Technologies
Language: English
Subscribers: 1.23K
Description from channel

Latest updates about disclosure bug bounty reports: tech details, impacts, bounties 📣
Rate👇
https://cutt.ly/bugpoint_rate
Feedback👇
https://cutt.ly/bugpoint_feedback
#️⃣ bug bounty disclosed reports
#️⃣ bug bounty write-ups
#️⃣ bug bounty teleg

Ratings & Reviews

3.00

2 reviews

Reviews can be left only by registered users. All reviews are moderated by admins.

5 stars

1

4 stars

0

3 stars

0

2 stars

0

1 stars

1


The latest Messages 5

2022-06-19 15:14:02
Authentication token and CSRF token bypass

https://hackerone.com/reports/998457

Severity: High | 300 USD
Reported To: Enjin
Reported By: #whiteshadow201
State: Resolved
Disclosed: June 19, 2022, 12:11pm (UTC)
184 views12:14
Open / Comment
2022-06-19 11:12:02
bypass forced password protection via circles app

https://hackerone.com/reports/1406926

Severity: Low | 100 USD
Reported To: Nextcloud
Reported By: #michag86
State: Resolved
Disclosed: June 19, 2022, 8:10am (UTC)
186 views08:12
Open / Comment
2022-06-18 19:42:03
Broken access control

https://hackerone.com/reports/1539426

Severity: High
Reported To: UPS VDP
Reported By: #nayefhamouda
State: Resolved
Disclosed: June 18, 2022, 4:40pm (UTC)
66 views16:42
Open / Comment
2022-06-17 20:50:02
sql injection via https://setup.p2p.ihost.com/

https://hackerone.com/reports/1567516

Severity: Critical
Reported To: IBM
Reported By: #exploitmsf
State: Resolved
Disclosed: June 17, 2022, 5:47pm (UTC)
155 views17:50
Open / Comment
2022-06-17 11:52:02
CSRF Bypassed on Logout Endpoint

https://hackerone.com/reports/1091403

Severity: Low
Reported To: Enjin
Reported By: #er_salil
State: Resolved
Disclosed: June 17, 2022, 8:50am (UTC)
61 views08:52
Open / Comment
2022-06-17 11:46:03
Race condition via project team member invitation system.

https://hackerone.com/reports/1108291

Severity: Low | 60 USD
Reported To: Enjin
Reported By: #akashhamal0x01
State: Resolved
Disclosed: June 17, 2022, 8:44am (UTC)
73 views08:46
Open / Comment
2022-06-16 22:04:03
xmlrpc file enabled

https://hackerone.com/reports/1575401

Severity: Low
Reported To: Yelp
Reported By: #happykira0x1
State: Duplicate
Disclosed: June 16, 2022, 7:02pm (UTC)
137 views19:04
Open / Comment
2022-06-16 18:16:02
curl "globbing" can lead to denial of service attacks

https://hackerone.com/reports/1572120

Severity: Low
Reported To: curl
Reported By: #iylz
State: N/A
Disclosed: June 16, 2022, 3:14pm (UTC)
150 views15:16
Open / Comment
2022-06-16 07:30:02
CSRF (protection bypassed) to force a below 18 user into viewing an nsfw subreddit !

https://hackerone.com/reports/1480569

Severity: Medium | 500 USD
Reported To: Reddit
Reported By: #marvelmaniac
State: Resolved
Disclosed: June 16, 2022, 4:27am (UTC)
187 views04:30
Open / Comment
2022-06-16 05:00:01
XSS STORED at https://webcast.tiktokv.com/ Via Create Live Event in `Description` Form

https://hackerone.com/reports/1542703

Severity: Medium | 1,500 USD
Reported To: TikTok
Reported By: #aidilarf_2000
State: Resolved
Disclosed: June 16, 2022, 1:58am (UTC)
182 views02:00
Open / Comment