writeups.xyz writeups.xyz / HubSpot

Title Vulnerabilities Programs Authors
HubSpot Full Account Takeover in Bug Bounty
Saving more than 100,000 website from a Watering Hole attack
"A tale of making internet pollution free" - Exploiting Client-Side Prototype Pollution in the wild
RCE in Hubspot with EL injection in HubL
XSS at Hubspot and XSS in email areas.
Practical Web Cache Poisoning
Reflected XSS + Possible Server Side Template Injection in HubSpot CMS ( All Websites Uses HubSpot was affected )