π― New Report #3404968: Stored-XSS in Banner Name field
πΊSeverity: Low
π½ Reporter: yoyomiski
βοΈ Reputation: 303
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-10-30
β° Disclosed: 2025-11-19 09:36:35
π Summary: null
π Report JSON File: 3404968
@hackeronereports
πΊSeverity: Low
π½ Reporter: yoyomiski
βοΈ Reputation: 303
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-10-30
β° Disclosed: 2025-11-19 09:36:35
π Summary: null
π Report JSON File: 3404968
@hackeronereports
π― New Report #3403727: Reflected XSS in /admin/banner-zone.php (v6.0.0 )
πΊSeverity: Medium
π½ Reporter: vidang04
βοΈ Reputation: 121
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-10-29
β° Disclosed: 2025-11-19 09:36:08
π Summary: null
π Report JSON File: 3403727
@hackeronereports
πΊSeverity: Medium
π½ Reporter: vidang04
βοΈ Reputation: 121
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-10-29
β° Disclosed: 2025-11-19 09:36:08
π Summary: null
π Report JSON File: 3403727
@hackeronereports
π― New Report #3403450: Information Disclosure via Verbose Error Messages
πΊSeverity: Medium
π½ Reporter: yoyomiski
βοΈ Reputation: 303
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-10-29
β° Disclosed: 2025-11-19 09:35:34
π Summary: null
π Report JSON File: 3403450
@hackeronereports
πΊSeverity: Medium
π½ Reporter: yoyomiski
βοΈ Reputation: 303
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-10-29
β° Disclosed: 2025-11-19 09:35:34
π Summary: null
π Report JSON File: 3403450
@hackeronereports
π― New Report #3401612: IDOR Vulnerability in Banner Deletion
πΊSeverity: High
π½ Reporter: cyberjoker
βοΈ Reputation: 142
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-10-27
β° Disclosed: 2025-11-19 09:35:06
π Summary: null
π Report JSON File: 3401612
@hackeronereports
πΊSeverity: High
π½ Reporter: cyberjoker
βοΈ Reputation: 142
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-10-27
β° Disclosed: 2025-11-19 09:35:06
π Summary: null
π Report JSON File: 3401612
@hackeronereports
π― New Report #3401464: Information Disclosure via βAdd userβ lookup in Account Management (User Access)
πΊSeverity: Medium
π½ Reporter: yoyomiski
βοΈ Reputation: 303
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-10-27
β° Disclosed: 2025-11-19 09:34:36
π Summary: null
π Report JSON File: 3401464
@hackeronereports
πΊSeverity: Medium
π½ Reporter: yoyomiski
βοΈ Reputation: 303
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-10-27
β° Disclosed: 2025-11-19 09:34:36
π Summary: null
π Report JSON File: 3401464
@hackeronereports
π― New Report #3400506: Stored XSS in Conversion Statistics via Tracker Name
πΊSeverity: High
π½ Reporter: cyberjoker
βοΈ Reputation: 142
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-10-26
β° Disclosed: 2025-11-19 09:33:37
π Summary: null
π Report JSON File: 3400506
@hackeronereports
πΊSeverity: High
π½ Reporter: cyberjoker
βοΈ Reputation: 142
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-10-26
β° Disclosed: 2025-11-19 09:33:37
π Summary: null
π Report JSON File: 3400506
@hackeronereports
π― New Report #3399809: Stored XSS on inventory-retrieve.php
πΊSeverity: Low
π½ Reporter: lu3ky-13
βοΈ Reputation: 17159
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-10-25
β° Disclosed: 2025-11-19 09:33:09
π Summary: A Cross-site Scripting (XSS) vulnerability was discovered on the inventory-retrieve.php and campaign-edit.php pages. The vulnerability allowed an attacker to inject malicious code that would be executed when the page was loaded.
π Report JSON File: 3399809
@hackeronereports
πΊSeverity: Low
π½ Reporter: lu3ky-13
βοΈ Reputation: 17159
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-10-25
β° Disclosed: 2025-11-19 09:33:09
π Summary: A Cross-site Scripting (XSS) vulnerability was discovered on the inventory-retrieve.php and campaign-edit.php pages. The vulnerability allowed an attacker to inject malicious code that would be executed when the page was loaded.
π Report JSON File: 3399809
@hackeronereports
π― New Report #3399218: Improper sanitisation of input in the settings could cause DoS
πΊSeverity: Low
π½ Reporter: lu3ky-13
βοΈ Reputation: 17159
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-10-25
β° Disclosed: 2025-11-19 09:32:50
π Summary: A vulnerability was found in the settings functionality of the application where attacker-controlled values in the email fromName and email fromCompany fields were persisted and later rendered to pages without proper output encoding. This could have led to the execution of arbitrary JavaScript in the context of the application, potentially disrupting or replacing the page UI and effectively disabling the site for affected users.
π Report JSON File: 3399218
@hackeronereports
πΊSeverity: Low
π½ Reporter: lu3ky-13
βοΈ Reputation: 17159
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-10-25
β° Disclosed: 2025-11-19 09:32:50
π Summary: A vulnerability was found in the settings functionality of the application where attacker-controlled values in the email fromName and email fromCompany fields were persisted and later rendered to pages without proper output encoding. This could have led to the execution of arbitrary JavaScript in the context of the application, potentially disrupting or replacing the page UI and effectively disabling the site for affected users.
π Report JSON File: 3399218
@hackeronereports
π― New Report #3399191: Reflected XSS in account-preferences-plugin.php
πΊSeverity: Medium
π½ Reporter: lu3ky-13
βοΈ Reputation: 17159
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-10-25
β° Disclosed: 2025-11-19 09:32:33
π Summary: A reflected cross-site scripting (XSS) vulnerability was discovered in the account-preferences-plugin.php file of the Revive Adserver 6.0.1 application. Untrusted input from the "group" query parameter was reflected without proper output encoding or context-aware escaping, allowing the injection of malicious JavaScript code into the resulting page.
π Report JSON File: 3399191
@hackeronereports
πΊSeverity: Medium
π½ Reporter: lu3ky-13
βοΈ Reputation: 17159
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-10-25
β° Disclosed: 2025-11-19 09:32:33
π Summary: A reflected cross-site scripting (XSS) vulnerability was discovered in the account-preferences-plugin.php file of the Revive Adserver 6.0.1 application. Untrusted input from the "group" query parameter was reflected without proper output encoding or context-aware escaping, allowing the injection of malicious JavaScript code into the resulting page.
π Report JSON File: 3399191
@hackeronereports
π― New Report #3398283: Authorization bypass allows changing email address of other users
πΊSeverity: High
π½ Reporter: yoyomiski
βοΈ Reputation: 303
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-10-24
β° Disclosed: 2025-11-19 09:32:13
π Summary: The Revive Adserver 6.0.0 was found to have an authorization bypass vulnerability that allowed changing the email address of other users without requiring the account password. The vulnerability was present in the admin panel endpoint /admin/agency-user.php, which accepted a POST request that updated a user's email without re-authentication.
π Report JSON File: 3398283
@hackeronereports
πΊSeverity: High
π½ Reporter: yoyomiski
βοΈ Reputation: 303
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-10-24
β° Disclosed: 2025-11-19 09:32:13
π Summary: The Revive Adserver 6.0.0 was found to have an authorization bypass vulnerability that allowed changing the email address of other users without requiring the account password. The vulnerability was present in the admin panel endpoint /admin/agency-user.php, which accepted a POST request that updated a user's email without re-authentication.
π Report JSON File: 3398283
@hackeronereports
π― New Report #3413890: Unrestricted setPerPage allows huge result sets / resource exhaustion / mass log retrieval
πΊSeverity: Medium
π½ Reporter: vidang04
βοΈ Reputation: 121
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-11-06
β° Disclosed: 2025-11-19 13:00:00
π Summary: null
π Report JSON File: 3413890
@hackeronereports
πΊSeverity: Medium
π½ Reporter: vidang04
βοΈ Reputation: 121
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-11-06
β° Disclosed: 2025-11-19 13:00:00
π Summary: null
π Report JSON File: 3413890
@hackeronereports
π― New Report #3413764: Username normalization missing allows visually indistinguishable accounts (Whitespace-Based Impersonation)
πΊSeverity: Medium
π½ Reporter: yoyomiski
βοΈ Reputation: 303
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-11-06
β° Disclosed: 2025-11-19 12:57:16
π Summary: null
π Report JSON File: 3413764
@hackeronereports
πΊSeverity: Medium
π½ Reporter: yoyomiski
βοΈ Reputation: 303
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-11-06
β° Disclosed: 2025-11-19 12:57:16
π Summary: null
π Report JSON File: 3413764
@hackeronereports
π― New Report #3411750: Stored-XSS in campaign name displayed in Banners modal
πΊSeverity: Medium
π½ Reporter: vidang04
βοΈ Reputation: 121
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-11-05
β° Disclosed: 2025-11-19 12:56:20
π Summary: null
π Report JSON File: 3411750
@hackeronereports
πΊSeverity: Medium
π½ Reporter: vidang04
βοΈ Reputation: 121
π State: resolved
πΌ Team: Revive Adserver
π΅ Bounty: null
π Submitted: 2025-11-05
β° Disclosed: 2025-11-19 12:56:20
π Summary: null
π Report JSON File: 3411750
@hackeronereports
π― New Report #3328291: Existence of completed pods allows for bypass of Kubernetes NetworkPolicy
πΊSeverity: Medium
π½ Reporter: savannabungee
βοΈ Reputation: 107
π State: resolved
πΌ Team: AWS VDP
π΅ Bounty: null
π Submitted: 2025-09-05
β° Disclosed: 2025-11-19 23:05:18
π Summary: null
π Report JSON File: 3328291
@hackeronereports
πΊSeverity: Medium
π½ Reporter: savannabungee
βοΈ Reputation: 107
π State: resolved
πΌ Team: AWS VDP
π΅ Bounty: null
π Submitted: 2025-09-05
β° Disclosed: 2025-11-19 23:05:18
π Summary: null
π Report JSON File: 3328291
@hackeronereports
π― New Report #3328343: Lack of minimum value bid wheel verification on customer bid in Rental Trips
πΊSeverity: Low
π½ Reporter: sameer ali
βοΈ Reputation: 592
π State: resolved
πΌ Team: Bykea
π΅ Bounty: null
π Submitted: 2025-09-05
β° Disclosed: 2025-11-20 05:46:58
π Summary: A missing validation on the customer bid field when creating rental trips allowed passengers to submit arbitrary bid amounts, including very low fares. Proper validation was added to prevent unrealistic values.
π Report JSON File: 3328343
@hackeronereports
πΊSeverity: Low
π½ Reporter: sameer ali
βοΈ Reputation: 592
π State: resolved
πΌ Team: Bykea
π΅ Bounty: null
π Submitted: 2025-09-05
β° Disclosed: 2025-11-20 05:46:58
π Summary: A missing validation on the customer bid field when creating rental trips allowed passengers to submit arbitrary bid amounts, including very low fares. Proper validation was added to prevent unrealistic values.
π Report JSON File: 3328343
@hackeronereports
π― New Report #3295503: Customer can cancel a individual booking in a batch, causing locking of partner.
πΊSeverity: Medium
π½ Reporter: sameer ali
βοΈ Reputation: 592
π State: resolved
πΌ Team: Bykea
π΅ Bounty: null
π Submitted: 2025-08-12
β° Disclosed: 2025-11-20 05:32:17
π Summary: The vulnerability allowed users to update the status of individual trips inside a batch, even though only batch-level status changes were intended. By cancelling the single trip inside a one-parcel batch, the batch was placed into an inconsistent state, causing the assigned partner to become stuck in a booking they could not complete or cancel.
π Report JSON File: 3295503
@hackeronereports
πΊSeverity: Medium
π½ Reporter: sameer ali
βοΈ Reputation: 592
π State: resolved
πΌ Team: Bykea
π΅ Bounty: null
π Submitted: 2025-08-12
β° Disclosed: 2025-11-20 05:32:17
π Summary: The vulnerability allowed users to update the status of individual trips inside a batch, even though only batch-level status changes were intended. By cancelling the single trip inside a one-parcel batch, the batch was placed into an inconsistent state, causing the assigned partner to become stuck in a booking they could not complete or cancel.
π Report JSON File: 3295503
@hackeronereports
π― New Report #3328367: Path traversal via archive.extract - CVE 2021-3281 incomplete patch
πΊSeverity: Low
π½ Reporter: stackered
βοΈ Reputation: 198
π State: resolved
πΌ Team: Django
π΅ Bounty: null
π Submitted: 2025-09-05
β° Disclosed: 2025-11-21 19:05:24
π Summary: A vulnerability was discovered in the "extract" function of the ZipArchive and TarArchive classes in the Django framework. The vulnerability was caused by the use of the "abspath" function, which removes terminating path separators. This made the guard logic protection insufficient to protect against partial-path traversal. As a result, an attacker could potentially write files outside of the base directory when unzipping archives.
π Report JSON File: 3328367
@hackeronereports
πΊSeverity: Low
π½ Reporter: stackered
βοΈ Reputation: 198
π State: resolved
πΌ Team: Django
π΅ Bounty: null
π Submitted: 2025-09-05
β° Disclosed: 2025-11-21 19:05:24
π Summary: A vulnerability was discovered in the "extract" function of the ZipArchive and TarArchive classes in the Django framework. The vulnerability was caused by the use of the "abspath" function, which removes terminating path separators. This made the guard logic protection insufficient to protect against partial-path traversal. As a result, an attacker could potentially write files outside of the base directory when unzipping archives.
π Report JSON File: 3328367
@hackeronereports
π― New Report #3329310: Improper bot-authentication allows to impersonate any user when sending messages in a room
πΊSeverity: High
π½ Reporter: stackered
βοΈ Reputation: 198
π State: resolved
πΌ Team: Basecamp
π΅ Bounty: 2000
π Submitted: 2025-09-06
β° Disclosed: 2025-11-21 19:39:42
π Summary: A vulnerability was discovered in the bot authentication mechanism. The issue allowed an unauthenticated user to impersonate any user and post messages in rooms the impersonated user had access to. The bot authentication function failed to properly validate the bot key, allowing a partial key to match a valid user record.
π Report JSON File: 3329310
@hackeronereports
πΊSeverity: High
π½ Reporter: stackered
βοΈ Reputation: 198
π State: resolved
πΌ Team: Basecamp
π΅ Bounty: 2000
π Submitted: 2025-09-06
β° Disclosed: 2025-11-21 19:39:42
π Summary: A vulnerability was discovered in the bot authentication mechanism. The issue allowed an unauthenticated user to impersonate any user and post messages in rooms the impersonated user had access to. The bot authentication function failed to properly validate the bot key, allowing a partial key to match a valid user record.
π Report JSON File: 3329310
@hackeronereports
π― New Report #3434543: Arbitrary free in curl's config file parsing.
πΊSeverity: Low
π½ Reporter: letshack9707
βοΈ Reputation: 100
π State: informative
πΌ Team: curl
π΅ Bounty: null
π Submitted: 2025-11-20
β° Disclosed: 2025-11-23 16:03:02
π Summary: null
π Report JSON File: 3434543
@hackeronereports
πΊSeverity: Low
π½ Reporter: letshack9707
βοΈ Reputation: 100
π State: informative
πΌ Team: curl
π΅ Bounty: null
π Submitted: 2025-11-20
β° Disclosed: 2025-11-23 16:03:02
π Summary: null
π Report JSON File: 3434543
@hackeronereports
π― New Report #3426761: HTML Injection in Emails on login.mtb.com via givenName parameter leads to phishing attacks
πΊSeverity: Medium
π½ Reporter: ozgun32
βοΈ Reputation: 207
π State: resolved
πΌ Team: M T Bank Vulnerability Disclosure
π΅ Bounty: null
π Submitted: 2025-11-15
β° Disclosed: 2025-11-24 14:07:16
π Summary: A vulnerability was found that allowed HTML injection in emails on login.mtb.com via the givenName parameter. This vulnerability could have enabled phishing attacks.
π Report JSON File: 3426761
@hackeronereports
πΊSeverity: Medium
π½ Reporter: ozgun32
βοΈ Reputation: 207
π State: resolved
πΌ Team: M T Bank Vulnerability Disclosure
π΅ Bounty: null
π Submitted: 2025-11-15
β° Disclosed: 2025-11-24 14:07:16
π Summary: A vulnerability was found that allowed HTML injection in emails on login.mtb.com via the givenName parameter. This vulnerability could have enabled phishing attacks.
π Report JSON File: 3426761
@hackeronereports
π2
π― New Report #3432833: [SFTP TOCTOU Race Condition in Upload Resume Logic Leads to Arbitrary File Append](https://hackerone.com/reports/3432833)
πΊSeverity: Medium
π½ Reporter: cainvsilf
βοΈ Reputation: 100
π State: informative
πΌ Team: curl
π΅ Bounty: null
π Submitted: 2025-11-19
β° Disclosed: 2025-11-24 18:55:10
π Summary: null
π Report JSON File: 3432833
@hackeronereports
πΊSeverity: Medium
π½ Reporter: cainvsilf
βοΈ Reputation: 100
π State: informative
πΌ Team: curl
π΅ Bounty: null
π Submitted: 2025-11-19
β° Disclosed: 2025-11-24 18:55:10
π Summary: null
π Report JSON File: 3432833
@hackeronereports