
H1 Disclosed - Public Disclosures
@h1disclosed
User friendly unofficial HackerOne public disclosures, keeps you updated about the recently disclosed bugs.
Made With ♥ By Hackers For Hackers. - @rohsec
ID: 1575142640366256128
https://www.buymeacoffee.com/rohsec 28-09-2022 15:17:38
2,2K Tweet
8,8K Takipçi
1 Takip Edilen




⚡ Email Verification Bypass via Race Condition 👨🏻💻 Sijo Johnson ➟ Malwarebytes ⬜ None 💰 None 🔗 hackerone.com/reports/3020733 #bugbounty #bugbountytips #cybersecurity #infosec


⚡ Replayable Password Change Request Across Sessions. 👨🏻💻 Mantosh Sah ➟ Malwarebytes ⬜ None 💰 None 🔗 hackerone.com/reports/3269777 #bugbounty #bugbountytips #cybersecurity #infosec





⚡ No SPF/DMARC records on mb-cosmos.com 👨🏻💻 Aditya sharma 🇮🇳 ➟ Malwarebytes 🟧 Medium 💰 None 🔗 hackerone.com/reports/1030042 #bugbounty #bugbountytips #cybersecurity #infosec







⚡ PII Exposure via Email Confirmation Link – Email Embedded in Token & Leaked via Wayback Machine 👨🏻💻 Mantosh Sah ➟ Omise 🟧 Medium 💰 None 🔗 hackerone.com/reports/3210022 #bugbounty #bugbountytips #cybersecurity #infosec


⚡ Prompt Injection via GitHub Patch in Brave AI Chat (Leo) 👨🏻💻 Jacolon Walker ➟ Brave Software 🟥 High 💰 None 🔗 hackerone.com/reports/3086301 #bugbounty #bugbountytips #cybersecurity #infosec



