Open Bug Bounty selected among the
Top 5 Bug Bounty programs to watch
by The Hacker News

All Open Bug Bounty emails are sent only from openbugbounty.org domain being digitally signed. All others are fake. Learn more.
For security researchers
Report a Vulnerability
Submit, help fixing, get kudos.
For website owners
Start a Bug Bounty
Run your bounty program for free.
1,339,588 coordinated disclosures
974,923 fixed vulnerabilities
1,658 bug bounty programs, 3,282 websites
30,000 researchers, 1,464 honor badges

Coordinated Disclosure Vulnerability

This vulnerability was reported via our coordinated disclosure Open Bug Bounty program and patched.

  Latest Patched

 03.10.2022 obs.kmu.edu.tr
 02.10.2022 cybersport.ru
 02.10.2022 fu-berlin.de
 01.10.2022 capaoalto.sc.gov.br
 01.10.2022 curitibanos.sc.gov.br
 01.10.2022 cunhapora.sc.gov.br
 01.10.2022 marema.sc.gov.br

  Latest Blog Posts

08.07.2022 by 4websecurity
CVE 2022-29455 is still affecting millions of Wordpress sites
08.07.2022 by kh4sh3i_
Zabbix - SAML SSO Authentication Bypass
08.07.2022 by FR13ND0x7F
The Time Machine — Weaponizing WaybackUrls for Recon, BugBounties , OSINT, Sensitive Endpoints and what not
15.02.2022 by sepkatpro
Ultimate XSS Polyglot
11.11.2021 by mistry4592
The Most used Chrome Extensions are Used For Penetration Testing.

  Recent Recommendations

@skyynet_de     28 September, 2022
    Twitter skyynet_de:
Taha identified an XSS vulnerability on our site which could be fixed fast. Thanks for the provided information!
@S1awek1     27 September, 2022
    Twitter S1awek1:
Krystian found a bug on my e-store website. Thanks Krystian :)
@anonpatcher     16 September, 2022
    Twitter anonpatcher:
Thank you to Dipu1A for making us aware of an XSS vulnerability on our site. We promptly patched it following their guidance!
@ClementBourgoin     16 September, 2022
    Twitter ClementBourgoin:
Thanks to Sébastien that helped me found a XSS vulnerability on a e-commerce website.
@Dave_J_Moran     9 September, 2022
    Twitter Dave_J_Moran:
Highly recommended and a huge thanks for assisting with the disclosure of an XSS Vulnerability, thanks for getting in touch!