Filters:
1,284 Results Found
Account Takeover via OAuth Misconfiguration
Discovered in the authentication flow of a popular SaaS platform allowing attackers to bypass authentication...
@security_researcher
DOM XSS in E-commerce Checkout
Found in the checkout process of a major retailer's website allowing injection of malicious JavaScript through URL parameters...
@webpentester
SSRF in Internal Service API
Discovered in a cloud service provider's internal API allowing access to metadata and credentials of other tenants...
@cloudsec_expert
RCE in Admin Dashboard
Remote code execution vulnerability found in the admin dashboard of a CMS platform through improper file upload validation...
@rce_hunter
SQL Injection in Reporting Module
Time-based blind SQL injection found in the reporting dashboard of a financial application allowing data exfiltration...
@db_hacker
CSRF in Profile Update
Cross-site request forgery vulnerability allowing attackers to modify user profile information without consent...
@webapp_tester