incremental-ids

1 article
sort: new top best
clear filter
0 6/10
bug-bounty

A researcher discovered a bug chain combining Self Stored XSS with IDOR to achieve arbitrary XSS execution: by injecting XSS payloads into supplier names via IDOR on other users' requests (using predictable incremental IDs), the payload executes when target users delete the malicious supplier entry.

footstep.ninja · devanshbatham/Awesome-Bugbounty-Writeups · 12 hours ago · details