Open Bug Bounty selected among the
Top 5 Bug Bounty programs to watch
by The Hacker News

All Open Bug Bounty emails are sent only from domain being digitally signed. All others are fake. Learn more.
For security researchers
Report a Vulnerability
Submit, help fixing, get kudos.
For website owners
Start a Bug Bounty
Run your bounty program for free.
1,339,588 coordinated disclosures
974,921 fixed vulnerabilities
1,658 bug bounty programs, 3,282 websites
29,998 researchers, 1,464 honor badges

aaryansaharan | Security Researcher Profile

Security researcher aaryansaharan has already helped fix 88 vulnerabilities.

Researcher reputation:  150

Real name:
Aaryan Saharan

Contact email:
[email protected]

Experience in Application Security
1-3 years

Award / Bug Bounty I prefer:
An acknowledgment on my profile is enough but if you feel like treating me to something extra for my time I appreciate the following -

Bug Bounty (PayPal, Bitcoin)
Swag (T-Shirt etc)

Halls of Fame:

Follow me on:

Ethics and Rules:
Aaryan Saharan is required to abide by the ethics and rules of the Open Bug Bounty project. If you reasonably believe that rules are not respected, please report this to us.

Recommendations and Acknowledgements

@atau10614405     1 June, 2020
    Twitter atau10614405 atau from stmbmultismart:
Thanks Aaryan for reporting the vulnerability about xxs.
We will soon fix the problem
@ryra16642059     25 February, 2020
    Twitter ryra16642059 ryta from sinfosec:
Thanks AARYAN SAHARAN For informing us about the admin bypass vulner.
Our whole company would like to say thank you to you for helping us! We don't offer any bounty, but as a respect token , A thanks card will be sent to you over mail.
@jerrif15     24 December, 2019
    Twitter jerrif15 Jeriff from bpjs:
Thanks Aaryan Saharan for informing us about the cross site scripting vulnerability . Good communication skills.We will fix it asap!
@zuburlis     26 March, 2019
    Twitter zuburlis Vasilis from gila:
Thanks for fing the vulnerability. Bug will be fixed at next update.
@James57510078     7 March, 2019
    Twitter James57510078 James from Buzz Host:
Thanks Aaryan Saharan for Informing about XSS Vulnerability.
Keep the Good Work Up!
@Sid98736880     2 March, 2019
    Twitter Sid98736880 Sid from Adat:
Thanks aaryan saharan for Reporting Xss vulnerability. From now we will pay more attention. We have send some gigs , hope you like them.
@Jack07365750     24 February, 2019
    Twitter Jack07365750 Jack from kayserihaber:
Well he sensed me an personal email and even shared the link of his profile to write a Feedback. Thankyou @aaryansaharan. The vulnerability will be patched soon.

Please login via Twitter to add a recommendation

Honor Badges

Number of Secured Websites

10+ Secured Websites Badge
50+ Secured Websites Badge
500+ Secured Websites Badge
Web Security Veteran Badge
10+ Websites
50+ Websites
500+ Websites
1000+ Websites

Advanced Security Research

WAF Bypasser Badge
CSRF Master Badge
AppSec Logic Master Badge
Fastest Fix Badge
WAF Bypasser
CSRF Master
30+ Reports
AppSec Logic Master
30+ Reports
Fastest Fix
Fix in 24 hours

Outstanding Achievements

Secured OBB Badge
OBB Advocate Badge
Improved OBB Badge
Secured OBB
OBB Advocate
Improved OBB

Commitment to Remediate and Patch

Patch Master Badge
Patch Guru Badge
Patch Lord Badge
Patch Master
55% Patched
Patch Guru
65% Patched
Patch Lord
75% Patched

Recommendations and Recognition

10+ Recommends
25+ Recommends
50+ Recommends

Distinguished Blog Author

Distinguished Blog Author Badge
Distinguished Blog Author Badge
Distinguished Blog Author Badge
1 Post
3 Posts
5+ Posts

Research Statistics

Total reports:168
Total reports on VIP sites:9
Total patched vulnerabilities:88
Recommendations received:7
Active since:21.02.2019

Open Bug Bounty Certificate

Researcher Certificate

Reported Vulnerabilities

All Submissions VIP SubmissionsFeatured Submissions

No posts in blog yet

  Latest Patched


  Latest Blog Posts

08.07.2022 by 4websecurity
CVE 2022-29455 is still affecting millions of Wordpress sites
08.07.2022 by kh4sh3i_
Zabbix - SAML SSO Authentication Bypass
08.07.2022 by FR13ND0x7F
The Time Machine — Weaponizing WaybackUrls for Recon, BugBounties , OSINT, Sensitive Endpoints and what not
15.02.2022 by sepkatpro
Ultimate XSS Polyglot
11.11.2021 by mistry4592
The Most used Chrome Extensions are Used For Penetration Testing.

  Recent Recommendations

@skyynet_de     28 September, 2022
    Twitter skyynet_de:
Taha identified an XSS vulnerability on our site which could be fixed fast. Thanks for the provided information!
@S1awek1     27 September, 2022
    Twitter S1awek1:
Krystian found a bug on my e-store website. Thanks Krystian :)
@anonpatcher     16 September, 2022
    Twitter anonpatcher:
Thank you to Dipu1A for making us aware of an XSS vulnerability on our site. We promptly patched it following their guidance!
@ClementBourgoin     16 September, 2022
    Twitter ClementBourgoin:
Thanks to Sébastien that helped me found a XSS vulnerability on a e-commerce website.
@Dave_J_Moran     9 September, 2022
    Twitter Dave_J_Moran:
Highly recommended and a huge thanks for assisting with the disclosure of an XSS Vulnerability, thanks for getting in touch!