![]() |
|
HackerOne Disclosed Reports - 2026-04-16 - Printable Version +- Dark C0d3rs (https://darkcoders.wiki) +-- Forum: Exploit Log (https://darkcoders.wiki/Forum-Exploit-Log) +--- Forum: Research Papers/Vulnerability reports (https://darkcoders.wiki/Forum-Research-Papers-Vulnerability-reports) +--- Thread: HackerOne Disclosed Reports - 2026-04-16 (/Thread-HackerOne-Disclosed-Reports-2026-04-16) |
HackerOne disclosed reports - 2026-04-16 - hashXploiter - 04-17-2026
Medium
resolved Residual Malicious Payloads on HackerOne after Vulnerability FixesBug reported by joejoe5 was disclosed at April 16, 2026, 12:06 pm | Improper Input Validation A vulnerability was previously discovered on the HackerOne platform that allowed users to add malicious payloads to their profile pages. Despite remediation efforts, some of these malicious payloads were not fully removed from user profiles. This situation meant that the malicious content could still be triggered when users visited certain profile pages. |