#1066607 HTML Injection through Account Name field on TikTok ads portal being rendered on …
The Account Name field on the TikTok Ads Portal did not have restrictions on HTML […]
Read moreDaily news about TikTok – fresh news, every day
The Account Name field on the TikTok Ads Portal did not have restrictions on HTML […]
Read more
TikTok. Reported at, December 23, 2020 1:47pm -0800. Asset. com.zhiliaoapp.musically. (Android: Play Store). CVE ID. […]
Read more
State, Resolved (Closed). Disclosed, January 8, 2021 4:08pm -0800. Reported to. TikTok. Reported at, July […]
Read more
An endpoint used by the TikTok Ads portal was vulnerable to CORS bypass therefore potentially […]
Read more
A CORS misconfiguration was discovered in the TikTok ads portal which could potentially allow an […]
Read moreImproper authorization could potentially allow an attacker to bypass SMS verification and delete a TikTok […]
Read moreA Server Side Request Forgery (SSRF) vulnerability was reported on the TikTok ads portal. This […]
Read moreA missing CSRF protection and open redirect vulnerability was reported in the TikTok Careers portal […]
Read moreTikTok. Reported at, August 26, 2020 1:07pm -0700. Asset. *.tiktok.com. (Domain). CVE ID. Weakness, Cross-site […]
Read moreTikTok. http://tiktok.com. Reports resolved. 36. Assets in scope. 12. Average bounty. $257-$515. Submit report. Bug […]
Read more