bug-chain

1 article
sort: new top best
clear filter
0 6/10
vulnerability

A researcher discovered a bug chain combining Stored Self XSS with IDOR in a financial management application, exploiting an incremental ID vulnerability to inject XSS payloads into other users' supplier requests that would execute when victims deleted those requests.

footstep.ninja · devanshbatham/Awesome-Bugbounty-Writeups · 22 hours ago · details