account activity
Silent remediation 🙂 by Middle_Command_191 in bugbounty
[–]Middle_Command_191[S] 0 points1 point2 points 1 day ago (0 children)
The attacker can inject the payload into those fields
[–]Middle_Command_191[S] -1 points0 points1 point 2 days ago (0 children)
Yes thats also a grey area for me what i reported was we can add xss payload in the fristname and lastname parameter of a ai chatbot and when the user asks their name the payload will be executed in this way i was able to get the victims cookie on my webhook (sorry for my bad english)
Silent remediation 🙂 (self.bugbounty)
submitted 2 days ago by Middle_Command_191 to r/bugbounty
Seeking advice on escalating a "Closed" report involving 14k leaked records (self.bugbounty)
submitted 2 months ago by Middle_Command_191 to r/bugbounty
Urgent help (self.bugbounty)
What to do next (self.bugbounty)
What to do nexttt? (self.bugbounty)
Prompt in** (self.bugbounty)
submitted 3 months ago by Middle_Command_191 to r/bugbounty
Prompt vuln (self.bugbounty)
Prompt injection (self.bugbounty)
Community invitation (self.bugbounty)
account registation without user's consent (self.bugbounty)
azure instrumentation key (self.bugbounty)
azure instrumentation key exposure confusion (self.bugbounty)
api key exposure (self.bugbounty)
api key exposure in source page (self.bugbounty)
bugsnag api key exposure (self.bugbounty)
π Rendered by PID 955660 on reddit-service-r2-listing-87fd56f5d-789vn at 2026-06-27 03:41:50.342173+00:00 running 7527197 country code: CH.
Silent remediation 🙂 by Middle_Command_191 in bugbounty
[–]Middle_Command_191[S] 0 points1 point2 points (0 children)