json-injection

1 article
sort: new top best
clear filter
0 5/10

Researcher found three vulnerabilities at Yahoo's Brightroll service: two RCEs via JSON injection in a message queue system (bypassing command filters using Unicode escapes), and an SSRF vulnerability in image resizing that allowed arbitrary file reads via curl flag injection. The third vulnerability was nearly an RCE but limited to file disclosure without execution.

Yahoo Kedrisec Brightroll RabbitMQ Aquatone Google AWS
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 22 hours ago · details