| Abdulluuuu | Information Exposure Through Debug Information (CWE-215) | Closed | Thu, 10 Sep 2026 |
| hunter0x8 | Information Exposure Through Debug Information (CWE-215) | Closed | Thu, 10 Sep 2026 |
| redfr0g | Information Disclosure (CWE-200) | Closed | Wed, 9 Sep 2026 |
| Th3ho4ds | Improper Access Control - Generic (CWE-284) | Closed | Wed, 9 Sep 2026 |
| cannabis | Insufficient Session Expiration (CWE-613) | Closed | Wed, 9 Sep 2026 |
| 0xf4h1m | Improper Authentication - Generic (CWE-287) | Closed | Wed, 9 Sep 2026 |
| 0xf4h1m | Improper Authentication - Generic (CWE-287) | Closed | Wed, 9 Sep 2026 |
| 0xf4h1m | Improper Authentication - Generic (CWE-287) | Closed | Wed, 9 Sep 2026 |
| r1ck | Improper Access Control - Generic (CWE-284) | New | Wed, 9 Sep 2026 |
| SpawnZii | Improper Access Control - Generic (CWE-284) | New | Wed, 9 Sep 2026 |
| larips950 | Open Redirect (CWE-601) | New | Wed, 9 Sep 2026 |
| h0rus3c | Cross-site Scripting (XSS) - Reflected (CWE-79) | New | Wed, 9 Sep 2026 |
| skav | Improper Access Control - Generic (CWE-284) | New | Wed, 9 Sep 2026 |
| GreyNOC | Use of Hard-coded Credentials (CWE-798) | New | Wed, 9 Sep 2026 |
| KrysS | Insecure Direct Object Reference (IDOR) (CWE-639) | Closed | Wed, 9 Sep 2026 |
| bpe | Insecure Direct Object Reference (IDOR) (CWE-639) | Resolved | Wed, 9 Sep 2026 |
| Mizu | Insecure Direct Object Reference (IDOR) (CWE-639) | Resolved | Wed, 9 Sep 2026 |
| Mizu | Insecure Direct Object Reference (IDOR) (CWE-639) | Resolved | Wed, 9 Sep 2026 |
| h0rus3c | Cross-site Scripting (XSS) - Reflected (CWE-79) | New | Wed, 9 Sep 2026 |
| debutant92 | Insecure Direct Object Reference (IDOR) (CWE-639) | Resolved | Wed, 9 Sep 2026 |
| ishoeb0x1 | Cross-Site Request Forgery (CSRF) (CWE-352) | New | Wed, 9 Sep 2026 |
| Xsora7 | Code Injection (CWE-94) | New | Wed, 9 Sep 2026 |
| thorxd | Improper Authentication - Generic (CWE-287) | New | Wed, 9 Sep 2026 |
| 0xpa1 | Improper Access Control - Generic (CWE-284) | New | Wed, 9 Sep 2026 |
| Huguxs | Improper Access Control - Generic (CWE-284) | New | Wed, 9 Sep 2026 |
| 0x7ain | Open Redirect (CWE-601) | New | Wed, 9 Sep 2026 |
| Shiruki | Path Traversal (CWE-22) | New | Wed, 9 Sep 2026 |
| Elweth | Path Traversal (CWE-22) | New | Wed, 9 Sep 2026 |
| Bharal | Improper Access Control - Generic (CWE-284) | Closed | Wed, 9 Sep 2026 |
| Nitin | Permissive Cross-domain Policy with Untrusted Domains (CORS) (CWE-942) | New | Wed, 9 Sep 2026 |
| M3rcur | Business Logic Errors (CWE-840) | New | Wed, 9 Sep 2026 |
| humpybunny | Permissive Cross-domain Policy with Untrusted Domains (CORS) (CWE-942) | New | Wed, 9 Sep 2026 |
| Asta | Improper Access Control - Generic (CWE-284) | New | Wed, 9 Sep 2026 |
| xxxkali | Improper Access Control - Generic (CWE-284) | New | Wed, 9 Sep 2026 |
| bughuntar | Server Misconfiguration - Subdomain Takeover (CWE-16) | New | Wed, 9 Sep 2026 |
| h0rus3c | Cross-site Scripting (XSS) - DOM (CWE-79) | New | Wed, 9 Sep 2026 |
| Babauca | Server-Side Request Forgery (SSRF) (CWE-918) | New | Wed, 9 Sep 2026 |
| Asta | Insecure Direct Object Reference (IDOR) (CWE-639) | New | Wed, 9 Sep 2026 |
| 0kaz | Information Disclosure (CWE-200) | New | Wed, 9 Sep 2026 |
| 7knights | Cross-site Scripting (XSS) - Stored (CWE-79) | New | Wed, 9 Sep 2026 |
| M7moud4 | Cross-site Scripting (XSS) - DOM (CWE-79) | New | Wed, 9 Sep 2026 |
| NumberOreo | Insecure Direct Object Reference (IDOR) (CWE-639) | New | Wed, 9 Sep 2026 |
| phsi | Improper Authentication - Generic (CWE-287) | New | Wed, 9 Sep 2026 |
| e1000 | Insufficient Session Expiration (CWE-613) | New | Wed, 9 Sep 2026 |
| vanderlinde | Code Injection (CWE-94) | New | Wed, 9 Sep 2026 |
| hrishhthakur | Insecure Direct Object Reference (IDOR) (CWE-639) | New | Wed, 9 Sep 2026 |
| GoDiego | Cross-site Scripting (XSS) - Stored (CWE-79) | New | Wed, 9 Sep 2026 |
| gjhw4r | Improper Authentication - Generic (CWE-287) | New | Wed, 9 Sep 2026 |
| CrashOveride | Cleartext Transmission of Sensitive Information (CWE-319) | New | Wed, 9 Sep 2026 |
| BoabyToad | Permissive Cross-domain Policy with Untrusted Domains (CORS) (CWE-942) | New | Wed, 9 Sep 2026 |