Two-factor authentication (2FA) Bypass
https://hackerone.com/reports/708303
null
offensive-security
null
SDC bypass on calendar.mail.ru
https://hackerone.com/reports/1024029
4.8
chaosbolt
$1,500
Admin panel take over | User info leakage | Mass Comprimise
https://hackerone.com/reports/428757
null
bigchonk
null
Access control bypass leads to domain information disclosure
https://hackerone.com/reports/630192
4.2
morax
null
Compromise of auth via subset/superset namespace names.
https://hackerone.com/reports/778803
6.6
alex_orange
$500
Account verification bypass on translate.kromtech.com
https://hackerone.com/reports/737334
null
rumiljonov
$300
Slack server disclose h1 private issue report
https://hackerone.com/reports/1035976
null
jrckmcsb
null
Ability to bypass email verification for OAuth grants results in accounts takeovers on 3rd parties
https://hackerone.com/reports/922456
null
cache-money
$3,000
Bypass Too Many Requests Sign Up
https://hackerone.com/reports/947349
5.3
34n3kjb4j3b4jh
null