Found Algolia key in the DOM using my own Chrome extension. It searches the defined keywords in the DOM and JS files. github.com/dirtycoder0124… Exploit the key by following the steps given on hackwithsuryesh.medium.com/algolia-api-ke… #bugbounty #bugbountytips
5
32
240
162
13ألف
Escalated algolia key misconfiguration to stored xss.
0
0
4
0
463
Congratulations bro, I'm happy for you that my writeup helps you to exploit this.
1
0
3
0
253
Thank you for such a nice and easy to understand writeup. Everything is clear and step by step.
0
0
1
0
125
Wow, that's cool. Add some features from the DotGit plugin to it.
1
0
0
0
32
Lol, a lot of companies told me to fuck off, we don't care, and closed it as info, so I stopped reporting it.
1
0
0
0
96
United States الاتجاهات
- 1. #CashAppPools 1,169 posts
- 2. Canada 425K posts
- 3. Reagan 192K posts
- 4. Immigration 152K posts
- 5. Ashley 150K posts
- 6. #HaloWC 3,298 posts
- 7. West Ham 15.5K posts
- 8. #ROGXboxAllyXSweepstakes N/A
- 9. Megan 62K posts
- 10. Letitia James 58.5K posts
- 11. Kyler Gordon N/A
- 12. Lukas Reichel N/A
- 13. #CashAppFriday N/A
- 14. #WorldSeries 43.3K posts
- 15. rod wave 3,138 posts
- 16. Tish 14.8K posts
- 17. Gerald R. Ford 20.1K posts
- 18. Revis N/A
- 19. Uncut Gems N/A
- 20. Chelsea 93K posts
Loading...
Something went wrong.
Something went wrong.