Report Email Alerts Open Bug Bounty: 188,261 coordinated disclosures
Total Vulnerabilities Fixed: 93,473
175,237 vulnerable websites, 16,683 VIP websites
4,246 security researchers, 5,676 notification subscribers

Open Bug Bounty ID

OBB-260631

expedia.com Security Vulnerability

On the 06.07.2017 security researcher TvM Helped patch 587 vulnerabilities
Received 5 Coordinated Disclosure badges
Received 22 recommendations
disclosed XSS vulnerability affecting expedia.com website.

On our side, we have notified website owner via all reasonable communication channels about the vulnerability, so it can be patched as quickly as possible.

Currently the vulnerability is patched and does not represent any security risk for the website or its visitors.

Vulnerability Details


expedia.com Description

Access Denied.

Vulnerable URL:

Other details:

Patched:Yes, at 01.11.2017
Latest check for patch:01.11.2017 07:11 GMT
Vulnerability type:XSS
Vulnerability status:Publicly disclosed
Alexa Rank595
VIP website status:Yes
Check expedia.com for malware:Click here

Mirror: Click here to view the mirror

Coordinated Disclosure Timeline

Vulnerability submitted via Open Bug Bounty6 July, 2017 08:17 GMT
Vulnerability existence verified and confirmed 7 July, 2017 05:28 GMT
Generic security notifications sent to website owner7 July, 2017 05:28 GMT
Notification sent to subscribers (without technical details)7 July, 2017 06:17 GMT
Vulnerability details disclosed by researcher29 September, 2017 06:30 GMT
Vulnerability patched by the website owner1 November, 2017 07:11 GMT

User Comments:

Please login via twitter to be the first one to comment.


Latest Vulnerabilities on *.expedia.com

OBB-ID Reported by Status Reported on
On Hold
16.09.2017
patched
06.07.2017
patched
05.02.2017
patched
31.12.2016
patched
19.12.2016
patched
22.08.2016
patched
21.09.2015
patched
21.09.2015
patched
21.09.2015
patched
21.09.2015
patched
21.09.2015
patched
18.05.2015

Latest Vulnerabilities Reported by TvM

OBB-ID Vulnerability Status Reported
patched
06.07.2017
patched
06.07.2017
patched
21.06.2017
unpatched
19.06.2017
unpatched
26.05.2017
patched
22.05.2017
patched
22.05.2017
unpatched
22.05.2017
patched
22.05.2017
unpatched
19.05.2017
unpatched
19.05.2017
unpatched
19.05.2017
unpatched
18.05.2017
patched
18.05.2017
patched
18.05.2017
unpatched
18.05.2017
patched
18.05.2017
unpatched
18.05.2017
patched
18.05.2017
unpatched
17.05.2017


LATEST VIP SUBMISSIONS

leparadisdunepassionnee.hautetfort.com
Reported by AndreCalvinho Helped patch 90 vulnerabilities
Received 3 Coordinated Disclosure badges
Received 3 recommendations
on 13.12.2017
lemondedesexpertsco...bles.hautetfort.com
Reported by AndreCalvinho Helped patch 90 vulnerabilities
Received 3 Coordinated Disclosure badges
Received 3 recommendations
on 13.12.2017
spreadshirt.com
Reported by Gromak123_XSS Helped patch 334 vulnerabilities
Received 3 Coordinated Disclosure badges
Received 1 recommendations
on 13.12.2017
sc.edu
Reported by OmniGooch Helped patch 1691 vulnerabilities
Received 5 Coordinated Disclosure badges
Received 6 recommendations
on 13.12.2017
vidtomp3.com
Reported by OmniGooch Helped patch 1691 vulnerabilities
Received 5 Coordinated Disclosure badges
Received 6 recommendations
on 13.12.2017
tt.com
Reported by OmniGooch Helped patch 1691 vulnerabilities
Received 5 Coordinated Disclosure badges
Received 6 recommendations
on 13.12.2017
downsub.com
Reported by huntingforbug Helped patch 13 vulnerabilities
Received 2 Coordinated Disclosure badges
Received 3 recommendations
on 12.12.2017
healthgrades.com
Reported by RenwaX23 Helped patch 0 vulnerabilities
Received 0 Coordinated Disclosure badges
on 12.12.2017
allure.com
Reported by The_Pentester Helped patch 0 vulnerabilities
Received 0 Coordinated Disclosure badges
on 12.12.2017
vogue.com
Reported by huntingforbug Helped patch 13 vulnerabilities
Received 2 Coordinated Disclosure badges
Received 3 recommendations
on 12.12.2017



LATEST SUBMISSIONS

dsv61.nl
Reported by AndreCalvinho Helped patch 90 vulnerabilities
Received 3 Coordinated Disclosure badges
Received 3 recommendations
on 13.12.2017
dsp.imageflo.com
Reported by AndreCalvinho Helped patch 90 vulnerabilities
Received 3 Coordinated Disclosure badges
Received 3 recommendations
on 13.12.2017
dsmedica.info
Reported by AndreCalvinho Helped patch 90 vulnerabilities
Received 3 Coordinated Disclosure badges
Received 3 recommendations
on 13.12.2017
dsmconsultants.co.uk
Reported by AndreCalvinho Helped patch 90 vulnerabilities
Received 3 Coordinated Disclosure badges
Received 3 recommendations
on 13.12.2017
dscindia.org
Reported by AndreCalvinho Helped patch 90 vulnerabilities
Received 3 Coordinated Disclosure badges
Received 3 recommendations
on 13.12.2017
drzwi-w7dni.pl
Reported by AndreCalvinho Helped patch 90 vulnerabilities
Received 3 Coordinated Disclosure badges
Received 3 recommendations
on 13.12.2017
lemon.com.br
Reported by AndreCalvinho Helped patch 90 vulnerabilities
Received 3 Coordinated Disclosure badges
Received 3 recommendations
on 13.12.2017
78in.net
Reported by AndreCalvinho Helped patch 90 vulnerabilities
Received 3 Coordinated Disclosure badges
Received 3 recommendations
on 13.12.2017
aki.com.mx
Reported by AndreCalvinho Helped patch 90 vulnerabilities
Received 3 Coordinated Disclosure badges
Received 3 recommendations
on 13.12.2017
888telecom.myreadyweb.com
Reported by AndreCalvinho Helped patch 90 vulnerabilities
Received 3 Coordinated Disclosure badges
Received 3 recommendations
on 13.12.2017