Report Email Alerts Open Bug Bounty: 205,835 coordinated disclosures
Total Vulnerabilities Fixed: 97,445
188,099 vulnerable websites, 17,723 VIP websites
4,598 security researchers, 5,928 notification subscribers

Open Bug Bounty ID

OBB-205141

onelogin.com Security Vulnerability

On the 10.01.2017 security researcher k0t Helped patch 364 vulnerabilities
Received 3 Coordinated Disclosure badges
Received 6 recommendations
disclosed XSS vulnerability affecting onelogin.com website.

On our side, we have notified website owner via all reasonable communication channels about the vulnerability, so it can be patched as quickly as possible.

Currently the vulnerability is patched and does not represent any security risk for the website or its visitors.

Vulnerability Details


onelogin.com Description

Identity and Access Management Solutions - Cloud Single Sign-On Provider - IAM SaaS. OneLogin™ is a cloud-based IAM vendor providing users a secure SSO portal to access all their cloud and on-prem applications from any device.

Vulnerable URL:

Other details:

Patched:Yes, at 05.02.2017
Latest check for patch:05.02.2017 12:52 GMT
Vulnerability type:XSS
Vulnerability status:Publicly disclosed
Alexa Rank3617
VIP website status:Yes
Check onelogin.com for malware:Click here

Mirror: Click here to view the mirror

Coordinated Disclosure Timeline

Vulnerability submitted via Open Bug Bounty10 January, 2017 01:55 GMT
Generic security notifications sent to website owner10 January, 2017 01:57 GMT
Notification sent to subscribers (without technical details)10 January, 2017 02:17 GMT
Vulnerability details disclosed by researcher4 April, 2017 02:13 GMT
Vulnerability patched by the website owner4 April, 2017 18:31 GMT

User Comments:

Please login via twitter to be the first one to comment.


Latest Vulnerabilities on *.onelogin.com

OBB-ID Reported by Status Reported on
patched
10.01.2017

Latest Vulnerabilities Reported by k0t

OBB-ID Vulnerability Status Reported
On Hold
09.01.2018
On Hold
09.01.2018
On Hold
09.01.2018
On Hold
09.01.2018
On Hold
09.01.2018
On Hold
09.01.2018
On Hold
03.01.2018
On Hold
03.01.2018
On Hold
03.01.2018
On Hold
03.01.2018
On Hold
03.01.2018
On Hold
03.01.2018
On Hold
03.01.2018
On Hold
03.01.2018
On Hold
03.01.2018
On Hold
21.12.2017
patched
19.12.2017
patched
19.12.2017
patched
19.12.2017
On Hold
19.12.2017


LATEST VIP SUBMISSIONS

mcall.com
Reported by deb_security Helped patch 368 vulnerabilities
Received 4 Coordinated Disclosure badges
Received 18 recommendations
on 22.01.2018
sandiegouniontribune.com
Reported by deb_security Helped patch 368 vulnerabilities
Received 4 Coordinated Disclosure badges
Received 18 recommendations
on 22.01.2018
chicagotribune.com
Reported by deb_security Helped patch 368 vulnerabilities
Received 4 Coordinated Disclosure badges
Received 18 recommendations
on 22.01.2018
mangareader.net
Reported by deb_security Helped patch 368 vulnerabilities
Received 4 Coordinated Disclosure badges
Received 18 recommendations
on 22.01.2018
nottingham.ac.uk
Reported by fakessh Helped patch 324 vulnerabilities
Received 4 Coordinated Disclosure badges
Received 18 recommendations
on 22.01.2018
focus123.cn
Reported by deb_security Helped patch 368 vulnerabilities
Received 4 Coordinated Disclosure badges
Received 18 recommendations
on 22.01.2018
dziennikwschodni.pl
Reported by RootByte Helped patch 433 vulnerabilities
Received 3 Coordinated Disclosure badges
on 22.01.2018
ibtimes.com
Reported by deb_security Helped patch 368 vulnerabilities
Received 4 Coordinated Disclosure badges
Received 18 recommendations
on 22.01.2018
ultimate-guitar.com
Reported by deb_security Helped patch 368 vulnerabilities
Received 4 Coordinated Disclosure badges
Received 18 recommendations
on 22.01.2018
espncricinfo.com
Reported by deb_security Helped patch 368 vulnerabilities
Received 4 Coordinated Disclosure badges
Received 18 recommendations
on 22.01.2018



LATEST SUBMISSIONS

blog.public.gr
Reported by deb_security Helped patch 368 vulnerabilities
Received 4 Coordinated Disclosure badges
Received 18 recommendations
on 22.01.2018
premiotreccani.it
Reported by deb_security Helped patch 368 vulnerabilities
Received 4 Coordinated Disclosure badges
Received 18 recommendations
on 22.01.2018
abcfoto.abc.es
Reported by deb_security Helped patch 368 vulnerabilities
Received 4 Coordinated Disclosure badges
Received 18 recommendations
on 22.01.2018
konferencia.hvg.hu
Reported by deb_security Helped patch 368 vulnerabilities
Received 4 Coordinated Disclosure badges
Received 18 recommendations
on 22.01.2018
southflorida.com
Reported by deb_security Helped patch 368 vulnerabilities
Received 4 Coordinated Disclosure badges
Received 18 recommendations
on 22.01.2018
pacificsandiego.com
Reported by deb_security Helped patch 368 vulnerabilities
Received 4 Coordinated Disclosure badges
Received 18 recommendations
on 22.01.2018
vagazette.com
Reported by deb_security Helped patch 368 vulnerabilities
Received 4 Coordinated Disclosure badges
Received 18 recommendations
on 22.01.2018
citypaper.com
Reported by deb_security Helped patch 368 vulnerabilities
Received 4 Coordinated Disclosure badges
Received 18 recommendations
on 22.01.2018
ctnow.com
Reported by deb_security Helped patch 368 vulnerabilities
Received 4 Coordinated Disclosure badges
Received 18 recommendations
on 22.01.2018
studentaffairs.loyno.edu
Reported by fakessh Helped patch 324 vulnerabilities
Received 4 Coordinated Disclosure badges
Received 18 recommendations
on 22.01.2018