writeups.xyz writeups.xyz / Stored XSS

Title Vulnerabilities Programs Authors
Stored XSS in LibreOffice
Persistent XSS on Microsoft Bing.com by poisoning Bingbot indexing
Canary Token OSS Security Audit Report (Q2 2024)
Type confusion attacks in ProseMirror editors
SSD Advisory – SonicWall SMA100 Stored XSS To RCE
The Dark Side of Contact Forms: How I Identified 7 CVEs in WordPress Plugins
Beyond the @ Symbol: Exploiting the Flexibility of Email Addresses For Offensive Purposes
Collabora Online Stored XSS (CVE-2024-29182)
How Did I Easily Find Stored XSS at Apple And Earn $5000 ?
$20,300 Bounties from a 200 Hour Hacking Challenge
Hacking Microsoft and Wix with Keyboard Shortcuts
CVE-2024-23724: Ghost CMS Stored XSS Leading to Owner Takeover
CVE-2023-25365 / XSS via file upload bypass
Pitfalls of Desanitization: Leaking Customer Data from osTicket
Multiple Vulnerabilities On GestSup 3.2.44
Unrestricted File Upload Lead to Stored XSS at Microsoft main domain
Technical Advisory – Multiple Vulnerabilities in PandoraFMS Enterprise
$500 Bounty by Escalating DOM XSS to Stored XSS
Self-XSS to Stored XSS
Technical Advisory – Multiple Vulnerabilities in Nagios XI
Silverpeas App: Multiple CVEs leading to File Read on Server
$7000 Bounty on a Single Web Application
Technical Advisory: Vulnerabilities Identified within ListServ
Persistent cross-site scripting vulnerabilities in Liferay Portal
One Bug at a Time: $1,500 worth of XSS