Sorare Program Statistics
4 total issues disclosed
$900 total paid publicly
Most disclosed (1 disclosures) — Uncontrolled Resource Consumption
Disclosed Reports
| Report Title | Vulnerability Type | Disclosed By | Severity | Disclosed on |
|---|---|---|---|---|
| Unsufficent input verification leads to DoS and resource consumption | Uncontrolled Resource Consumption | tinine | Low | 2025-02-26 |
| Circular based introspetion Query leading to single request denial of service and cost consumption and query cost on api.sorare.com/graphql | None supplied | thebeast99 | Medium | 2024-10-17 |
| Operation CreateOrUpdateSo5LineupMutation does not restrict multiple captains | Improper Input Validation | fixenet | Low | 2023-08-01 |
| Mystery with a leaked token and Reusability of email confirmation link leading to Account Takeover | Inadequate Encryption Strength | gokulsk | Low | 2023-02-03 |
Getting started
Learn about vulnerability types
Getting started in bug bounties
Test your knowledge
Free Web Application Challenges
Guides for your hunts
ZSeano's Methodology
Effective Note Taking for bug bounties
Useful Resources
Disclosed HackerOne Reports
Our community
Endorsed Members
Hackevents
Member Articles