关键字【Cross-site Scripting (XSS) - Reflected】的搜索结果共2646记录

公开时间 奖金 作者 标题 厂商 漏洞类型
2019-02-08 $ apapedulimu Missing CSRF Token On Remove Coupun From Cart Starbucks Cross-Site Request Forgery (CSRF)
2019-02-07 $3500.0 alexbirsan XSSI on refer.xoom.com allows stealing email addresses and posting to Twitter on behalf of victim PayPal Cross-Site Request Forgery (CSRF)
2019-01-28 $ xalerafera CSRF на загрузку изображения Pandao Mail.ru Cross-Site Request Forgery (CSRF)
2019-01-28 $300.0 povargek Проверяем принадлеженость email и номера телефона к определенному юзеру / CSRF на смену номера для некоторых пользователей VK.com Cross-Site Request Forgery (CSRF)
2019-01-28 $ jarvis7 [██████] Cross-origin resource sharing misconfiguration (CORS) U.S. Dept Of Defense Improper Access Control - Generic
2019-01-25 $3000.0 seifelsallamy Reflected XSS POST method at partners.uber.com Uber Cross-site Scripting (XSS) - Reflected
2019-01-25 $7500.0 ngalog Chained Bugs to Leak Victim's Uber's FB Oauth Token Uber Improper Authentication - Generic
2019-01-25 $8000.0 ngalog Open Redirect on central.uber.com allows for account takeover Uber Improper Authentication - Generic
2019-01-23 $500.0 milkgames Deleting other people's comments on ModeratorMessages Valve Improper Authentication - Generic
2019-01-22 $ apapedulimu Missing CSRF Token On Add Coupon To Basket Starbucks Cross-Site Request Forgery (CSRF)
2019-01-22 $1000.0 k3m unuse domain still in using at wechat by Starbucks East China Starbucks Improper Access Control - Generic
2019-01-21 $250.0 sudi [auth2.zomato.com] Reflected XSS at `oauth2/fallbacks/error` | ORY Hydra an OAuth 2.0 and OpenID Connect Provider Zomato Cross-site Scripting (XSS) - Reflected
2019-01-16 $ mikki_khan command Injection in rawlog binary Dovecot Command Injection - Generic
2019-01-11 $ mik317 Account takeover due to CSRF in "Account details" option on █████████ U.S. Dept Of Defense Cross-Site Request Forgery (CSRF)
2019-01-07 $750.0 xpaw Reflected XSS on help.steampowered.com Valve Cross-site Scripting (XSS) - Reflected