PlayStation


8 total issues disclosed

$42,200 total paid publicly


Most disclosed (1 disclosures) — Use After Free

View disclosed reports



Disclosed Reports


Report Title Vulnerability Type Disclosed By Severity Disclosed on
SMAP bypass None supplied m00nbsd Medium 2021-05-27
SSRF chained to hit internal host leading to another SSRF which allows to read internal images. Server-Side Request Forgery (SSRF) bugdiscloseguys High 2021-03-30
Reflected XSS on transact.playstation.com using postMessage from the opening window Cross-site Scripting (XSS) - Reflected vakzz High 2021-03-30
SOCK_RAW sockets reachable from Webkit process allows triggering double free in IP6_EXTHDR_CHECK Double Free theflow0 High 2021-01-12
Websites Can Run Arbitrary Code on Machines Running the 'PlayStation Now' Application Code Injection parsiya Critical 2020-12-04
Access token stealing. Missing Authorization bugdiscloseguys High 2020-11-21
Authorization Token on PlayStation Network Leaks via postMessage function Violation of Secure Design Principles nnez High 2020-11-21
Use-After-Free In IPV6_2292PKTOPTIONS leading To Arbitrary Kernel R/W Primitives Use After Free theflow0 High 2020-07-06