Back to directory
WRITEUP #6153

Tricky CORS Bypass in Yahoo! View

OtherCORS misconfiguration
by@hacker_(Corben Leo)
Bounty
500
Program
Yahoo! / Verizon Media
Published
Nov 27, 2017
Added to HackDex
May 22, 2023
Read Full Writeuphttps://corben.io/blog/17-11-27-tricky-CORS
RELATED WRITEUPS
My First Bug Bounty: CORS Misconfiguration
OtherCORS misconfiguration
Data Theft in Salesforce: Manipulating Public Links
OtherSOQL injection
When Certificates Fail: A Story of Bypassed MFA in Remote Access
Other2FA / MFA bypass
SSTI in Bug Bounty Program: The Time I Played with Handlebars and Broke Stuff
OtherSSTI
Ghost In The Ppl Part 1: Byovdll
OtherUse-After-Free

Built with ❤️ by Shubham Rawat