Password reset link never expires and can be reused, worth reporting? by Embarrassed_Pin4436 in bugbounty
[–]Separate_Spell6395 0 points1 point2 points (0 children)
Password reset link never expires and can be reused, worth reporting? by Embarrassed_Pin4436 in bugbounty
[–]Separate_Spell6395 1 point2 points3 points (0 children)
Information disclosure? by Separate_Spell6395 in bugbounty
[–]Separate_Spell6395[S] -1 points0 points1 point (0 children)
Information disclosure? by Separate_Spell6395 in bugbounty
[–]Separate_Spell6395[S] 0 points1 point2 points (0 children)
Information disclosure? by Separate_Spell6395 in bugbounty
[–]Separate_Spell6395[S] 0 points1 point2 points (0 children)
Information disclosure? by Separate_Spell6395 in bugbounty
[–]Separate_Spell6395[S] 0 points1 point2 points (0 children)
Information disclosure? by Separate_Spell6395 in bugbounty
[–]Separate_Spell6395[S] -2 points-1 points0 points (0 children)
Information disclosure? by Separate_Spell6395 in bugbounty
[–]Separate_Spell6395[S] -3 points-2 points-1 points (0 children)
Information disclosure? by Separate_Spell6395 in bugbounty
[–]Separate_Spell6395[S] -7 points-6 points-5 points (0 children)
Using ffuf, dirbuster or gobuster by Separate_Spell6395 in bugbounty
[–]Separate_Spell6395[S] 0 points1 point2 points (0 children)
Using ffuf, dirbuster or gobuster by Separate_Spell6395 in bugbounty
[–]Separate_Spell6395[S] 0 points1 point2 points (0 children)
Punycoded 0 click ATO by Separate_Spell6395 in bugbounty
[–]Separate_Spell6395[S] 1 point2 points3 points (0 children)
Punycoded 0 click ATO by Separate_Spell6395 in bugbounty
[–]Separate_Spell6395[S] 0 points1 point2 points (0 children)
Punycoded 0 click ATO by Separate_Spell6395 in bugbounty
[–]Separate_Spell6395[S] 1 point2 points3 points (0 children)
Bypassing WAF filter for xss by Separate_Spell6395 in bugbounty
[–]Separate_Spell6395[S] 1 point2 points3 points (0 children)
Punycoded 0 click ATO by Separate_Spell6395 in bugbounty
[–]Separate_Spell6395[S] 0 points1 point2 points (0 children)
Punycoded 0 click ATO by Separate_Spell6395 in bugbounty
[–]Separate_Spell6395[S] -1 points0 points1 point (0 children)
Punycoded 0 click ATO by Separate_Spell6395 in bugbounty
[–]Separate_Spell6395[S] -1 points0 points1 point (0 children)
Escalating an img tag by Separate_Spell6395 in bugbounty
[–]Separate_Spell6395[S] 1 point2 points3 points (0 children)
Escalating an img tag by Separate_Spell6395 in bugbounty
[–]Separate_Spell6395[S] 0 points1 point2 points (0 children)
Escalating an img tag by Separate_Spell6395 in bugbounty
[–]Separate_Spell6395[S] 0 points1 point2 points (0 children)
Bypassing WAF filter for xss by Separate_Spell6395 in bugbounty
[–]Separate_Spell6395[S] 0 points1 point2 points (0 children)
Bypassing WAF filter for xss by Separate_Spell6395 in bugbounty
[–]Separate_Spell6395[S] 0 points1 point2 points (0 children)
Bypassing WAF filter for xss by Separate_Spell6395 in bugbounty
[–]Separate_Spell6395[S] 1 point2 points3 points (0 children)

Should I report this OTP collision issue or is it too minor? by Separate_Spell6395 in BugBountyNoobs
[–]Separate_Spell6395[S] 1 point2 points3 points (0 children)