Vulnerabilities are never limited to a set list. Any bug that escalates a user’s privileges or causes unexpected behavior with an impact to the integrity or confidentiality of our users’ data will be considered.

It is often the types of vulnerabilities we haven’t thought about that are the most interesting!

Recently collected Other bounties:

1 kyprizel 2500 pts kyprizel Denial of service in babeld
2 rohit-dua 1000 pts Rohit Dua Bypass organization paid plan billing validation
3 lionheartrox 500 pts Himanshu Mehta DLL hijacking in Git Large File Storage (LFS) installer
4 rhyselsmore 500 pts Rhys Elsmore Phishing vector on Markdown preview endpoint
5 ytrezq 5000 pts Laël Cellier Memory corruption in Git