| Tower | Use of Hard-coded Credentials (CWE-798) | New | Wed, 26 Aug 2026 |
| SC4R | Improper Access Control - Generic (CWE-284) | New | Wed, 26 Aug 2026 |
| badboy_17 | Use of Cache Containing Sensitive Information - Cache Deception (CWE-524) | New | Wed, 26 Aug 2026 |
| pwnwithlove | Command Injection - Generic (CWE-77) | New | Wed, 26 Aug 2026 |
| SecurityReapers | Insecure Direct Object Reference (IDOR) (CWE-639) | New | Wed, 26 Aug 2026 |
| L3monSec | Information Disclosure (CWE-200) | New | Wed, 26 Aug 2026 |
| Czeppo | Business Logic Errors (CWE-840) | Resolved | Wed, 26 Aug 2026 |
| Kuhaku | Information Disclosure (CWE-200) | New | Wed, 26 Aug 2026 |
| Vorelito67 | Improper Access Control - Generic (CWE-284) | New | Wed, 26 Aug 2026 |
| Tinmarino | Open Redirect (CWE-601) | New | Wed, 26 Aug 2026 |
| lux-cut | Cross-site Scripting (XSS) - DOM (CWE-79) | New | Wed, 26 Aug 2026 |
| iamadityapatel | Improper Access Control - Generic (CWE-284) | Accepted | Wed, 26 Aug 2026 |
| ola0 | SQL Injection (CWE-89) | New | Wed, 26 Aug 2026 |
| valbrux | Path Traversal (CWE-22) | New | Wed, 26 Aug 2026 |
| Al7eX | Server Misconfiguration - Subdomain Takeover (CWE-16) | New | Wed, 26 Aug 2026 |
| Etherwa | Denial of Service (CWE-400) | Closed | Wed, 26 Aug 2026 |
| hack42 | Open Redirect (CWE-601) | New | Wed, 26 Aug 2026 |
| oniii | Improper Access Control - Generic (CWE-284) | New | Wed, 26 Aug 2026 |
| Thepwnisher | Improper Access Control - Generic (CWE-284) | Closed | Wed, 26 Aug 2026 |
| hidalg0d | Cross-site Scripting (XSS) - Reflected (CWE-79) | New | Wed, 26 Aug 2026 |
| ziadhcybersec | Improper Access Control - Generic (CWE-284) | Closed | Wed, 26 Aug 2026 |
| G48r1eL | Server-Side Request Forgery (SSRF) (CWE-918) | New | Wed, 26 Aug 2026 |
| bagoza | Business Logic Errors (CWE-840) | Accepted | Wed, 26 Aug 2026 |
| C1ph3rox | Information Disclosure (CWE-200) | New | Wed, 26 Aug 2026 |
| ikrar | Information Disclosure (CWE-200) | New | Wed, 26 Aug 2026 |
| planara | Improper Authentication - Generic (CWE-287) | New | Wed, 26 Aug 2026 |
| zaynn | Improper Authentication - Generic (CWE-287) | New | Wed, 26 Aug 2026 |
| A1ERTA | Improper Access Control - Generic (CWE-284) | New | Wed, 26 Aug 2026 |
| t0nerace | Improper Access Control - Generic (CWE-284) | Closed | Wed, 26 Aug 2026 |
| sh4rk0x | Cross-site Scripting (XSS) - DOM (CWE-79) | New | Wed, 26 Aug 2026 |
| 0xsnpaii | Improper Access Control - Generic (CWE-284) | Resolved | Wed, 26 Aug 2026 |
| 0xsnpaii | Improper Access Control - Generic (CWE-284) | Accepted | Wed, 26 Aug 2026 |
| PyUs3r | Insecure Direct Object Reference (IDOR) (CWE-639) | New | Wed, 26 Aug 2026 |
| sh4rk0x | Open Redirect (CWE-601) | Closed | Wed, 26 Aug 2026 |
| seek404 | Insecure Direct Object Reference (IDOR) (CWE-639) | New | Wed, 26 Aug 2026 |
| izouss | Improper Access Control - Generic (CWE-284) | Accepted | Wed, 26 Aug 2026 |
| LIKKENCH | Insecure Direct Object Reference (IDOR) (CWE-639) | New | Wed, 26 Aug 2026 |
| hakupiku | Improper Authentication - Generic (CWE-287) | New | Wed, 26 Aug 2026 |
| 0x7ain | Improper Access Control - Generic (CWE-284) | Closed | Wed, 26 Aug 2026 |
| PyUs3r | Improper Access Control - Generic (CWE-284) | New | Wed, 26 Aug 2026 |
| oniii | Open Redirect (CWE-601) | New | Wed, 26 Aug 2026 |
| Ap4sh | Improper Access Control - Generic (CWE-284) | Resolved | Wed, 26 Aug 2026 |
| Nottiboy_1337 | OS Command Injection (CWE-78) | Resolved | Wed, 26 Aug 2026 |
| deadheadtn | Permissive Cross-domain Policy with Untrusted Domains (CORS) (CWE-942) | New | Wed, 26 Aug 2026 |
| bytehx | Server-Side Request Forgery (SSRF) (CWE-918) | New | Wed, 26 Aug 2026 |
| Azerojii | Use of Cache Containing Sensitive Information - Cache Deception (CWE-524) | New | Wed, 26 Aug 2026 |
| EvidentObscurity19 | Business Logic Errors (CWE-840) | Accepted | Wed, 26 Aug 2026 |
| r4ffaele | Improper Access Control - Generic (CWE-284) | New | Wed, 26 Aug 2026 |
| IckoGZ | Cross-site Scripting (XSS) - Reflected (CWE-79) | New | Wed, 26 Aug 2026 |
| sh4rk0x | Open Redirect (CWE-601) | New | Wed, 26 Aug 2026 |