关键字【50.0】的搜索结果共176记录

公开时间 奖金 作者 标题 厂商 漏洞类型
2019-01-21 $250.0 sudi [auth2.zomato.com] Reflected XSS at `oauth2/fallbacks/error` | ORY Hydra an OAuth 2.0 and OpenID Connect Provider Zomato Cross-site Scripting (XSS) - Reflected
2019-01-07 $750.0 xpaw Reflected XSS on help.steampowered.com Valve Cross-site Scripting (XSS) - Reflected
2019-01-07 $750.0 tvmpt XSS @ store.steampowered.com via agecheck path name Valve Cross-site Scripting (XSS) - Reflected
2019-01-07 $750.0 mvc Stored XSS in the guide's GameplayVersion (www.dota2.com) Valve Cross-site Scripting (XSS) - Stored
2019-01-07 $750.0 zemnmez code injection, steam chat client Valve Code Injection
2018-12-18 $5000.0 mirchr Linux privilege escalation via trusted $PATH in keybase-redirector Keybase Privilege Escalation
2018-12-18 $5000.0 xpn Privilege Escalation via Keybase Helper Keybase Privilege Escalation
2018-12-17 $150.0 mushicious Field Day With Protocol Handlers Brave Software none
2018-12-13 $50.0 sbakhour Ability to login to the Nexus Repo Manager from https://nexus.imgur.com/ Imgur Path Traversal
2018-12-05 $250.0 chihuahua Reflected XSS of bbe-child-starter Theme via "value"-GET-parameter LocalTapiola Cross-site Scripting (XSS) - Reflected
2018-12-05 $250.0 hariharan21 Admin Macro Description Stored XSS Zendesk Cross-site Scripting (XSS) - Stored
2018-11-28 $550.0 ahd911 [www.zomato.com] CORS Misconfiguration, could lead to disclosure of sensitive information Zomato none
2018-11-27 $5000.0 honoki XXE on ██████████ by bypassing WAF ████ QIWI XML External Entities (XXE)
2018-11-20 $5000.0 appsecure_in Lack of payment type validation in dial.uber.com allows for free rides Uber Business Logic Errors
2018-11-18 $250.0 bobrov [contact-sys.com] SQL Injection /ajax/where/cityNameByCountryId limit param QIWI SQL Injection