Back to directory
WRITEUP #4899

Critical Security Flaw Found in WhatsApp Desktop Platform Allowing Cybercriminals Read From The File System Access

XSSStored XSSCSP bypassOpen redirectRCE
by@WeizmanGal(Gal Weizman)
Bounty
12,500
Program
Meta / Facebook
Published
Feb 4, 2020
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://www.perimeterx.com/tech-blog/2020/whatsapp-fs-read-vuln-disclosure/
RELATED WRITEUPS
Type confusion attacks in ProseMirror editors
XSSType confusion
Bypassing CSP via URL Parser Confusions : XSS on Netlify’s Image CDN
XSSCSP bypass
From MLOps to MLOops: Exposing the Attack Surface of Machine Learning Platforms
AI / LLMAI
Stored XSS in LibreOffice
XSSStored XSS
Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!
RCEConfusion attack

Built with ❤️ by Shubham Rawat