Agoric Program Statistics
2 total issues disclosed
$0 total paid publicly
 Most disclosed (1 disclosures) — Cross-site Scripting (XSS) - Stored
Disclosed Reports
| Report Title | Vulnerability Type | Disclosed By | Severity | Disclosed on | 
|---|---|---|---|---|
| Stored XSS in agoric-sdk - malicious iframes, malicious svg | Cross-site Scripting (XSS) - Stored | sickcodes | High | 2020-10-28 | 
| Improper Input Validation allows an attacker to "double spend" or "respend", violating the integrity of the message command history or causing DoS | Improper Input Validation | sickcodes | Medium | 2020-10-28 | 
 
   Getting started
 Getting started Learn about vulnerability types
 Learn about vulnerability types  Getting started in bug bounties
 Getting started in bug bounties  Test your knowledge
 Test your knowledge Free Web Application Challenges
 Free Web Application Challenges Guides for your hunts
 Guides for your hunts  ZSeano's Methodology
  ZSeano's Methodology Effective Note Taking for bug bounties
 Effective Note Taking for bug bounties Useful Resources
 Useful Resources  Disclosed HackerOne Reports
  Disclosed HackerOne Reports  Our community
 Our community Endorsed Members
 Endorsed Members Hackevents
  Hackevents  Member Articles
 Member Articles