Report Email Alerts Open Bug Bounty: 102424 coordinated disclosures
Full Disclosure: 32224 vulnerabilities
Total Vulnerabilities Fixed: 34604
112095 vulnerable websites, 12402 VIP websites
2631 security researchers, 3733 notification subscribers

Coordinated Vulnerability Disclosure

On the 10.01.2017 security researcher k0t Approved XSS vulnerabilities: 520
Approved XSS vulnerabilities on VIP websites: 234
reported a XSS vulnerability affecting the colourlovers.com website via the Open Bug Bounty vulnerability disclosure program. We verified the vulnerability and confirmed its existence.

Technical details of the vulnerability are currently hidden ("On Hold") to give website owner time to patch the vulnerability without putting any of its users at risk.

If you are the website owner, administrator or authorized third-party, please contact the researcher directly for vulnerability details and coordinated disclosure.

Important: we never act as intermediary between you and the researcher. It's completely up to you to decide if, and how, to thank the researcher. In some cases a 'thank you' email is enough, in others something more remarkable would be good to recognize his, or her, efforts and time. A recommendation may be a good idea.

colourlovers.com Description

Color Trends + Palettes :: COLOURlovers. COLOURlovers is a creative community where people from around the world create and share colors, palettes and patterns, discuss the latest trends and explore colorful articles... All in the spirit of love.

Notification & Disclosure Timeline

10 January, 2017 at 02:01 GMTVulnerability reported via Open Bug Bounty
10 January, 2017 at 02:04 GMTNotification sent to generic security emails
10 January, 2017 at 06:17 GMTNotification sent to subscribers (without technical details)

colourlovers.com Ranking:

Alexa Rank15488
VIP website statusYes
Check colourlovers.com for malware:Click here

Comments:

Please login via twitter to be the first one to comment.


Latest Vulnerabilities on *.colourlovers.com

Vulnerability Reported by Type Status Reported on
Open Bug Bounty
On Hold
10.01.2017
Open Bug Bounty
On Hold
09.12.2016
Open Bug Bounty
On Hold
07.12.2016

Latest Vulnerabilities Reported by k0t

Domain Type Status Reported
Open Bug Bounty
On Hold
24.02.2017
Open Bug Bounty
On Hold
24.02.2017
Open Bug Bounty
On Hold
24.02.2017
Open Bug Bounty
On Hold
24.02.2017
Open Bug Bounty
On Hold
24.02.2017
Open Bug Bounty
On Hold
14.02.2017
Open Bug Bounty
On Hold
09.02.2017
Open Bug Bounty
On Hold
08.02.2017
Open Bug Bounty
On Hold
07.02.2017
Open Bug Bounty
On Hold
07.02.2017
Open Bug Bounty
On Hold
07.02.2017
Open Bug Bounty
On Hold
07.02.2017
Open Bug Bounty
On Hold
07.02.2017
Open Bug Bounty
On Hold
07.02.2017
Open Bug Bounty
On Hold
06.02.2017
Open Bug Bounty
On Hold
06.02.2017
Open Bug Bounty
On Hold
06.02.2017
Open Bug Bounty
On Hold
06.02.2017
Open Bug Bounty
On Hold
06.02.2017
Open Bug Bounty
On Hold
06.02.2017

Latest VIP Submissions

telestar.fr
Reported by DrStache Twitter: @DrStache_
Recommendations received: 24
Approved XSS vulnerabilities: 3876
Approved XSS vulnerabilities on VIP websites: 146
on 24.02.2017
football365.fr
Reported by DrStache Twitter: @DrStache_
Recommendations received: 24
Approved XSS vulnerabilities: 3876
Approved XSS vulnerabilities on VIP websites: 146
on 24.02.2017
kelkoo.fr
Reported by DrStache Twitter: @DrStache_
Recommendations received: 24
Approved XSS vulnerabilities: 3876
Approved XSS vulnerabilities on VIP websites: 146
on 24.02.2017
fiches-auto.fr
Reported by DrStache Twitter: @DrStache_
Recommendations received: 24
Approved XSS vulnerabilities: 3876
Approved XSS vulnerabilities on VIP websites: 146
on 24.02.2017
asrock.com
Reported by DrStache Twitter: @DrStache_
Recommendations received: 24
Approved XSS vulnerabilities: 3876
Approved XSS vulnerabilities on VIP websites: 146
on 24.02.2017
stayfriends.de
Reported by k0t Recommendations received: 4
Approved XSS vulnerabilities: 520
Approved XSS vulnerabilities on VIP websites: 234
on 24.02.2017
mp-success.com
Reported by k0t Recommendations received: 4
Approved XSS vulnerabilities: 520
Approved XSS vulnerabilities on VIP websites: 234
on 24.02.2017
commandesparcs-parksorders.ca
Reported by Spam404 Twitter: @Spam404Online
Recommendations received: 61
Approved XSS vulnerabilities: 21972
Approved XSS vulnerabilities on VIP websites: 1555
on 24.02.2017
josbank.com
Reported by Spam404 Twitter: @Spam404Online
Recommendations received: 61
Approved XSS vulnerabilities: 21972
Approved XSS vulnerabilities on VIP websites: 1555
on 24.02.2017
debenhams.com
Reported by Spam404 Twitter: @Spam404Online
Recommendations received: 61
Approved XSS vulnerabilities: 21972
Approved XSS vulnerabilities on VIP websites: 1555
on 24.02.2017

Latest Submissions

shemaleyum.com
Reported by rj01 Twitter: @RoyJansen_01
Recommendations received: 3
Approved XSS vulnerabilities: 827
Approved XSS vulnerabilities on VIP websites: 130
on 24.02.2017
pascalssubsluts.com
Reported by rj01 Twitter: @RoyJansen_01
Recommendations received: 3
Approved XSS vulnerabilities: 827
Approved XSS vulnerabilities on VIP websites: 130
on 24.02.2017
secure.datumconnect.com
Reported by Thirup Twitter: @Mthirup
Approved XSS vulnerabilities: 4
on 24.02.2017
atkingdom-network.com
Reported by rj01 Twitter: @RoyJansen_01
Recommendations received: 3
Approved XSS vulnerabilities: 827
Approved XSS vulnerabilities on VIP websites: 130
on 24.02.2017
v7.88square.com
Reported by rj01 Twitter: @RoyJansen_01
Recommendations received: 3
Approved XSS vulnerabilities: 827
Approved XSS vulnerabilities on VIP websites: 130
on 24.02.2017
jobjunction.dk
Reported by Thirup Twitter: @Mthirup
Approved XSS vulnerabilities: 4
on 24.02.2017
pegasproductions.com
Reported by rj01 Twitter: @RoyJansen_01
Recommendations received: 3
Approved XSS vulnerabilities: 827
Approved XSS vulnerabilities on VIP websites: 130
on 24.02.2017
tour.pornstarplatinum.com
Reported by rj01 Twitter: @RoyJansen_01
Recommendations received: 3
Approved XSS vulnerabilities: 827
Approved XSS vulnerabilities on VIP websites: 130
on 24.02.2017
lejebolig.dk
Reported by Thirup Twitter: @Mthirup
Approved XSS vulnerabilities: 4
on 24.02.2017
frelsenshaer.onlinedonation.dk
Reported by Thirup Twitter: @Mthirup
Approved XSS vulnerabilities: 4
on 24.02.2017