Found Algolia key in the DOM using my own Chrome extension. It searches the defined keywords in the DOM and JS files. github.com/dirtycoder0124… Exploit the key by following the steps given on hackwithsuryesh.medium.com/algolia-api-ke… #bugbounty #bugbountytips
5
            31
            242
            162
            13K
        Escalated algolia key misconfiguration to stored xss.
0
                0
                4
                0
                474
                Congratulations bro, I'm happy for you that my writeup helps you to exploit this.
1
                0
                3
                0
                259
                Thank you for such a nice and easy to understand writeup. Everything is clear and step by step.
0
                0
                1
                0
                130
                Wow, that's cool. Add some features from the DotGit plugin to it.
1
                0
                0
                0
                34
                Lol, a lot of companies told me to fuck off, we don't care, and closed it as info, so I stopped reporting it.
1
                0
                0
                0
                98
                United States Tendências
- 1. #WWERaw 21.7K posts
 - 2. Logan Paul 4,521 posts
 - 3. Cowboys 33.4K posts
 - 4. Koa Peat 1,038 posts
 - 5. Cuomo 126K posts
 - 6. Monday Night Football 10.3K posts
 - 7. Cardinals 17.6K posts
 - 8. #OlandriaxCFDAAwards 8,971 posts
 - 9. #RawOnNetflix N/A
 - 10. Josh Sweat 1,194 posts
 - 11. Turpin N/A
 - 12. CM Punk 18.2K posts
 - 13. Caleb Wilson N/A
 - 14. Harvey Weinstein 9,315 posts
 - 15. Teen Vogue 6,036 posts
 - 16. Walt Weiss 2,866 posts
 - 17. Condon 3,239 posts
 - 18. Schwab 6,249 posts
 - 19. Braves 12.1K posts
 - 20. Guyton N/A
 
                            Loading...
                        
                    Something went wrong.
Something went wrong.