mycompany VDP: This test report has been disclosed by 20_root.

This test report has been disclosed by 20_root....Read More ...

Continue Reading
nullsec VDP: Test by HDR

Test by...Read More ...

Continue Reading
Wordfence Intelligence Weekly WordPress Vulnerability Report (November 11, 2024 to November 17, 2024)

_ Calling all superheroes and hunters! Introducing the End of Year Holiday Extravaganza and the WordPress Superhero Challenge for the Wordfence Bug Bounty Program! Through December 9th, 2024: _ All i ...

Continue Reading
A Bag of RATs: VenomRAT vs. AsyncRAT

Introduction Remote access tools (RATs) have long been a favorite tool for cyber attackers, since they enable remote control over compromised systems and facilitate data theft, espionage, and continu ...

Continue Reading
CVE-2024-52287 authentik performs insufficient validation of OAuth scopes

authentik is an open-source identity provider. When using the client_credentials or device_code OAuth grants, it was possible for an attacker to get a token from authentik with scopes that haven' ...

Continue Reading
CVE-2024-52287 authentik performs insufficient validation of OAuth scopes

authentik is an open-source identity provider. When using the client_credentials or device_code OAuth grants, it was possible for an attacker to get a token from authentik with scopes that haven' ...

Continue Reading
powergen.ai Cross Site Scripting vulnerability OBB-3960240

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified th ...

Continue Reading
mappy.ai Cross Site Scripting vulnerability OBB-3960241

Following the coordinated and responsible vulnerability disclosure guidelines of the ISO 29147 standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. notified th ...

Continue Reading

Back to Main

Subscribe for the latest news: