Biscuit's Bug Bounty Playbook
Ctrl
K
Copy
Bug Bounty Reports & Articles
7๏ธโฃ
Broken Access Control & Broken Authentication
โ๏ธ
File Upload Functionality
https://riccardomalatesta.com/how-i-earned-500-by-uploading-a-file-write-up-of-one-of-my-first-bug-bounty/
riccardomalatesta.com
CS Money disclosed on HackerOne: Blind XSS on image upload
HackerOne
Semrush disclosed on HackerOne: Unrestricted file upload in...
HackerOne
Reddit disclosed on HackerOne: Unrestricted File Upload on...
HackerOne
Reddit disclosed on HackerOne: Reflected XSS via File Upload
HackerOne
X (Formerly Twitter) disclosed on HackerOne: File Upload XSS in...
HackerOne
Previous
Broken Access Control & Broken Authentication
Next
Password Reset Functionality
Last updated
1 year ago