bugbountytips
Research Posts (2)
- Jun 11, 2020Open Redirect in FlattrReported a low impact Open Redirect to Flattr
- Jul 29, 2021CraftCMS Zero-day Chain: XSS to SSTI triggering RCEReported CVE-2021-27902 (XSS) and CVE-2021-27903 (SSTI) that can be chained together to gain Remote Code Execution in CraftCMS.