readme.md

January 20, 2023 ยท View on GitHub

Title

Week Passwords generated by password reset function

URL

https://hackerone.com/reports/765031

Severity score

null

Reporter

tp9222

Bounty paid

null


Title

(Possible) staff account takeover via reset token bruteforce at helpdesk.bistudio.com

URL

https://hackerone.com/reports/332632

Severity score

null

Reporter

europa

Bounty paid

$200


Title

Reset password without knowing current password

URL

https://hackerone.com/reports/806055

Severity score

null

Reporter

naategh

Bounty paid

null


Title

Forgot password link doesn't expire after used, only after some hours

URL

https://hackerone.com/reports/244642

Severity score

null

Reporter

mohammad_obaid

Bounty paid

null


Title

Password Reset Token Not Expired

URL

https://hackerone.com/reports/283550

Severity score

null

Reporter

geekninja

Bounty paid

null


Title

Failure to check password history

URL

https://hackerone.com/reports/255034

Severity score

null

Reporter

c0d3fire

Bounty paid

null


Title

Rate Limit too lenient for endpoint sending emails

URL

https://hackerone.com/reports/658089

Severity score

0

Reporter

harshita174

Bounty paid

null