lumbridge7 has reached Level 4 with 75+ unique vulnerabilities discovered and they have proven to us that they understand web application vulnerabilities and how to discover them. If you run a bug bounty/vulnerability disclosure program and you are looking for an active, professional researcher, we recommend considering this user
Report Title | Event ID | Severity | Vulnerability Type |
---|---|---|---|
Default credentials on login page | FirstBlood v3 | CRITICAL | Auth issues |
Stored XSS on drpanel | FirstBlood v3 | CRITICAL | Stored XSS |
Business logic allows to book appointments with unavailable doctors | FirstBlood v3 | Low | Application/Business Logic |
Open redirect | FirstBlood v3 | Informative |
|
Edit doctor page CSRF | FirstBlood v3 | Low | Cross Site Request Forgery |