writeups.xyz writeups.xyz / Pratik Yadav (@PratikY9967)

Title Vulnerabilities Programs Authors
Account Takeover: Unraveling IDOR + Stored XSS Flaws in an NFT Marketplace
HTML Injection(Unique Exploitation)
Graphql Bug to Steal Anyone’s Address
Ssrf to Read Local Files and Abusing the AWS metadata
Payment bypass